MSI Afterburner mêlé à des logiciels malveillants circulant dans la nature
[ad_1]
Les chercheurs en cybersécurité de Cyble ont identifié de tels sites Web frauduleux qui sont visuellement identiques au site Web de MSI; qui hébergent des versions modifiées du logiciel Afterburner contenant des logiciels malveillants. Ce malware peut infecter votre PC avec une multitude de mauvaises choses, including cryptojacking (using your PC’s system resources to mine cryptocurrency for the attacker); and data-theft. Cyble deconstructed the malware-laced Afterburner installer in a bid to identify its nature. Apparently it uses Monero XMR miner software to mine cryptocurrency. Apparently the attacker repackaged Afterburner into a custom installer that, in addition to installing Afterburner, fetches XMR miner from the Internet and infects Windows Explorer (explorer.exe) with a cryptojacking payload. The easiest way to avoid this is sticking to known sources such as the MSI website (www.msi.com); or known websites authorized to redistribute Afterburner. If infected, SFC (system file checker), coupled with Windows Defender or other popular antivirus software should help.
[ad_2]