TF-MAL-js.fakeupdateru
📛 Threat Title
Malware family: FakeUpdateRU
Description
ThreatFox malware family `js.fakeupdateru`. Printable name: FakeUpdateRU.
Indicators of Compromise (1)
Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.
domain
js.fakeupdateru
VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/js.fakeupdateru
IOC database
- Type
- domain
- Value
js.fakeupdateru- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
- Description
- Extracted from Threat TF-MAL-js.fakeupdateru
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/js.fakeupdateru
References (1)
- ThreatFox: IOCs for this family ThreatFox Malwares
Remediations (10)
-
web:blog.sucuri.net
Learn about the fake Google Chrome update malware , a common form of website malware that tricks users into downloading a remote access trojan disguised as a browser update. Understand how it works, its impact on websites, and how to protect your site from such threats. Stay updated on the latest malware trends with Sucuri.
-
web:cybernews.com
Researchers at the cybersecurity company Sucuri noticed an influx in websites infected with fake Google Chrome update malware , nicknamed " FakeUpdateRU ." The bogus websites trick users into thinking they are downloading a legitimate update for their Chrome browser, while they're actually installing a remote access trojan (RAT).
-
web:cybersecsentinel.com
The SocGholish, or "FakeUpdate," malware is a sophisticated and pervasive threat designed to infiltrate systems through seemingly legitimate update alerts. Delivered via compromised websites, this malware lures users into downloading malicious files disguised as updates for web browsers like Chrome and Firefox.
-
web:malpedia.caad.fkie.fraunhofer.de
FakeUpdateRU is a malicious JavaScript code injected into compromised websites to deliver further malware using the drive-by download technique. The malicious code displays a copy of the Google Chrome web browser download page and redirects the user to the download of a next-stage payload.
-
web:thecyberexpress.com
The fake browser update messages have been in the news for years now. However, researchers have discovered a variant of the older malware dubbed, FakeUpdateRU , which is now being used on bogus websites to trick users. This fraudulent browser update scam is pertaining to Google Chrome, which shows on ...
-
web:threatfox.abuse.ch
A malware sample can be associated with only one malware family . The page below gives you an overview on indicators of compromise associated with js. fakeupdateru .
-
web:windowsforum.com
The "Windows Update" screen you trust has been weaponized: attackers are using a high-fidelity fake update pop-up to trick Windows users into pasting and executing a malicious command that boots a fileless, in‑memory infostealer — a fresh and dangerous iteration of the ClickFix social‑engineering family . Background / Overview ClickFix is not a single piece of malware but a social ...
-
web:www.checkpoint.com
What Is FakeUpdates Malware ? FakeUpdates malware is a type of malware that creates false prompts for users to download a new update to their computer, browser, or computer program. Once a user accepts, the malware will download onto a device, leading to breaches, the downloading of additional malware or ransomware, or the loss of private login details. FakeUpdates was one of the leading ...
-
web:www.csoonline.com
The latest tactics of this campaign include steganography — hiding malware in the pixels of an image — and a "highly convincing" fake Windows Update screen that asks the user to open a Run ...
-
web:www.microsoft.com
Threat actors are targeting macOS users with fake utility fixes that trick them into running malicious Terminal commands. This campaign evades traditional defenses by stealing credentials, wallets, and sensitive data.
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.