‘This is not your typical run-of-the-mill malware’: CPUID download page hacked and tools replaced with links to malicious files



  • CPUID.com briefly compromised to serve malware
  • Tainted downloads used DLL sideloading with CRYPTBASE.dll
  • Sophisticated Trojan deployed, flagged by 20 AV engines

CPUID.com, a popular website for PC diagnostics tools has confirmed it was compromised and used to serve malware.

“Investigations are still ongoing, but it appears that a secondary feature (basically a side API) was compromised for approximately six hours between April 9 and April 10, causing the main website to randomly display malicious links (our signed original files were not compromised),” the project’s maintainers told BleepingComputer. The breach was found and has since been fixed.”


https://cdn.mos.cms.futurecdn.net/sqGgDPxHyGtqunPo56h9cL-2560-80.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

Leave a reply

Please enter your comment!
Please enter your name here

spot_imgspot_img