Tag

Batloader

All articles tagged with #batloader

cybersecurity2 years ago

Beware of Malicious ChatGPT Impersonators and Rogue AI Tool Sites

Malicious Google Search ads for generative AI services like OpenAI ChatGPT and Midjourney are being used to direct users to sketchy websites as part of a BATLOADER campaign designed to deliver RedLine Stealer malware. BATLOADER is a loader malware that's propagated via drive-by downloads where users searching for certain keywords on search engines are displayed bogus ads that, when clicked, redirect them to rogue landing pages hosting malware. The installer file is rigged with an executable file and a PowerShell script that downloads and loads RedLine Stealer from a remote server. The adversary's use of ChatGPT and Midjourney-themed lures to serve malicious ads and ultimately drop the RedLine Stealer malware was also highlighted last week by Trend Micro.