Date: April 14, 2025
An ongoing trojan malware campaign has been caught by researchers infecting thousands of Google Chrome and Microsoft Edge browsers.
Cybersecurity researchers have found an ongoing trojan malware campaign that is hijacking web browsers to steal confidential information. This sophisticated campaign targets Google Chrome and Microsoft Edge browsers masked as free popular software like Roblox FPS Unlocker, VLC media player, KeePass, Steam, and YouTube.
The single malicious campaign has hit over 300,000 Google Chrome and Microsoft Edge users globally. The victims fell for the impressively lookalike websites of mainstream tech giants like YouTube to install trojan malware that has been around since 2021. This malware has the power to take over control of the installation and task execution of multiple browser extensions and add-ons.
"The trojan malware contains different deliverables ranging from simple adware extensions that hijack searches to more sophisticated malicious scripts that deliver local extensions to steal private data and execute various commands"
- Spokesperson (ReasonLabs research team)
The malware also changes the default search engine to the user's preferred one, which keeps bouncing back even when users change it back to their original one. These search engines serve as a convenient playground for running ads or deploying more dangerous malware. Earlier, this malware was hidden in cracked versions of paid softwares that many websites offered for free.
The most dangerous part about these malware is that they cannot be removed from the system without a tough fight. Major antivirus software leaves the malware unnoticed or cannot be removed from the system, even though it has existed for over three years by now. The extensions enabled by the malware cannot be disabled even in Developer mode. Newer versions of the malware have scripts that can easily remove browser updates that identify or delete the extensions.
One way to remove this malware from browsers is to eliminate it from the system folders themselves. This effort includes deleting scheduled tasks that reactivate the malware and removing registry entries and their associated files and folders as named below:
Users who find these folders in their system can also check if their sensitive data was pawned online. To safeguard themselves against monetary losses, these systems must remove all confidential data, including passwords, financial credentials, and other personal documents.
By Arpit Dubey
Arpit is a dreamer, wanderer, and tech nerd who loves to jot down tech musings and updates. Armed with a Bachelor's in Business Administration and a knack for crafting compelling narratives and a sharp specialization in everything from Predictive Analytics to FinTech—and let’s not forget SaaS, healthcare, and more. Arpit crafts content that’s as strategic as it is compelling. With a Logician mind, he is always chasing sunrises and tech advancements while secretly preparing for the robot uprising.
Reddit Unveils AI-Powered Search Tool for Smarter Results
Reddit launched Reddit Answers, an AI-powered search tool that curates and summarizes discussions to enhance user experience and reduce reliance on Google.
OpenAI Scraps o3 Model, Pushes for Unified GPT-5 in a Major AI Overhaul
OpenAI is canceling its o3 AI model and merging it into GPT-5 for a simpler, more powerful system. A big move to stay ahead in the AI race.
Virtual Reality in Healthcare: Revolutionizing Patient Care
Experience the power of virtual reality in healthcare as it transforms medical training, patient care, and treatment methods with immersive technology for better accuracy, efficiency, and improved outcomes.
Google I/O 2025: Dates Announced for the Tech Giant’s Biggest Event of the Year
Google I/O 2025 is set for May 20-21! Expect big AI reveals, Android 16 updates, and more. Registrations are open for keynotes, demos, and game-changing tech innovations!