Users who watch pirated content such as movies, web series, TV shows, and video games online are in danger! HP Wolf Security has discovered a new malware campaign called ChromeLoader, which is infecting users with harmful Google Chrome extensions. The latest version, known as ChromeLoader Shampoo, spreads through websites that host pirated movies and video games.
How does this work? Hackers deceive Chrome users into downloading the fraudulent extension Shampoo, which promptly redirects the victim's search queries to malicious websites. As a result, these criminals accumulate substantial profits by engaging in fraudulent advertising campaigns that appear as pop-ups on the screen.
HP Wolf Security experts say that getting rid of ChromeLoader Shampoo is not as straightforward as uninstalling an extension. This malware employs looping scripts and a scheduled task in Windows to reinstall the extension automatically whenever the victim attempts to remove it or restart their device. In order to disable ChromeLoader Shampoo malware, users should disable its mechanism via specific steps.
How to identify if Shampoo or any such ChromeLoader is on your device? A simple method involves checking if Chrome is running with the "--load-extension" argument. ChromeLoader relies on this argument to load the extension into a Chrome session.
Read more on tech.hindustantimes.com