Beware This Ransomware Disguised as WhatsApp Webpage

With attention being focused solely on the WannaCry ransomware outbreak that happened over the weekend, it can be easy to lose track of the fact that the notorious hackers are still resorting to smaller attempts to compromise a user’s device. Case in point, there appears to be a fake Whatsapp link circulating around the internet.

The link in question looks like this:

whatsapp in cyrillicwhatsapp in cyrillic

And it may appear legit to those who merely give a cursory glance at the link. However, those who look closer at the link will notice that the word “WhatsApp” is written in Cyrillic instead of the English alphabet.

change whatsapp colourchange whatsapp colour
reddit

By clicking on the link, the user would be transported to a website that appears to promote colored themes for WhatsApp. Upon visiting the site, the website would prompt the user to share the site via their social media account or directly to friends in order to verify them.

Finally, the website would then ask the user to install an adware disguised as a Google Chrome extension to their browser.

fake google extensionfake google extension
reddit

For the most part, the danger that comes with this malware has mostly been neutralized by Google, as the WhatsApp link in question has since been flagged as dangerous, and the malicious extension has since been removed.

Nevertheless, it may be wise to remain vigilant with regards to the links you click. According to a post on Reddit, a Twitter handle has been spotted tweeting out similar Cyrillic-based links of other popular social network services.

attacking other social media platformattacking other social media platform
reddit

In short, pay close attention to the links that you click as some of them may not seem so innocent upon closer inspection.

10 Most Destructive Computer Viruses

10 Most Destructive Computer Viruses

Getting a computer virus has happened to many users in some fashion or another. To most, it is…Read more

Source: http://www.hongkiat.com/blog/whatsapp-page-ransomware/

Advertisements

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s