Skip to main content

New Windows spyware campaign can get you in a click

You might want to be a little bit more careful when clicking any attachments sent to you via email, or any files that you’ve downloaded on the web from untrusted websites. That’s because groups with bad intent are spreading the Vidar spyware as part of a new campaign that uses Microsoft Compiled HTML Help files.

Explained by Diana Lopera at the security firm Trustwave, this new spyware campaign involves malicious files that might look otherwise innocent. In this case, hackers and those with bad intent, are currently sending out infected attachments via email, tagged with the “request.doc” filename.

The body of the email also draws attention to opening the attachment, too. Yet, the file is truly discussed as an ISO which is also embedded with spoofed Microsoft Compiled HTML Help files and an “app.exe.” executable for the Vidar spyware.

The Vidar Malware files open up
Trustwave

The Microsoft Compiled HTML Help file is a type of file that’s usually intended to share support documentation, so you might be tempted to click then extract it when you open the original request.doc file. But, if you do so, you would be on your way to trouble. When the malicious help file is opened, it also opens up the Vidar spyware executable in the background.

For those unfamiliar, Vidar is a spyware that is known as an information stealer. It can collect credit card information, addresses, and other sensitive data from your system, and across different web browsers. It’s not necessarily new, but this method of distribution is, which is what raised the alarm for the Trustwave security firm.

If you want to stay protected against these types of infections and spyware, it’s always good to make sure your PC is up and running with some sort of antivirus. There are plenty of free options, but Microsoft’s own Security Center in Windows 10 and Windows 11 usually does a good job on its own as its definitions are constantly updated to spot the latest threats.

It is also good practice to never click strange-looking attachments from unknown senders, or from outside your organization, regardless of what is in the body of the email or in the subject line.

Editors' Recommendations

Arif Bacchus
Arif Bacchus is a native New Yorker and a fan of all things technology. Arif works as a freelance writer at Digital Trends…
The new Windows 11 Backup App takes another cue from the Mac
The Windows Backup App against a blurred background.

The latest Windows 11 Insider Preview includes a new Backup App that functions in a similar fashion to Time Machine in macOS.

The backup app will allow for more regular backups of most apps, settings, and data in Windows 11. This will allow for easier restore abilities, as well as the ability to transfer data to a new PC, NotebookCheck noted.

Read more
Microsoft teases design overhaul of major Windows 11 app
windows 11 taskbar third party app pinning

Microsoft teased a design overhaul that is coming to the Windows 11 File Explorer app in a future update at its Build developer conference this week.

The new File Explorer design is based on WinUI 3 and will modernize the app's folders, sidebar, address bar, and search bar to be more in tune with the overall Windows 11 style. This will bring to File Explorer a look and feel with more rounded and blurred designs, as well as mouse and touch optimizations, Windows Central noted.

Read more
The Windows Copilot puts Bing Chat in every Windows 11 computer
Copilot in Windows being used in the side panel.

Announced at Microsoft Build 2023, Windows will now have its own dedicated AI "copilot" that can be docked right into a side panel that can stay persistent while using other applications and aspects of the operating system.

Microsoft has been highly invested in AI over these recent months, and it was only a matter of time before it came to Windows. The time is now -- and it's coming in a big way.

Read more