Victoria (VIC) Sun
  • Home
  • Politics
  • Market
  • Finance
  • Investing
  • World
  • Technology
  • Health
No Result
View All Result
Victoria (VIC) Sun
  • Home
  • Politics
  • Market
  • Finance
  • Investing
  • World
  • Technology
  • Health
No Result
View All Result
Victoria (VIC) Sun
No Result
View All Result
Home Technology

Russians are warned about dangerous viruses on pirated sites and YouTube

December 20, 2025
in Technology

You might also like

Google will stop supporting ChromeOS in 2034

In 2025, Russians will spend tens of billions of rubles on smart watches

SpaceX: Falcon 9 flights suspended due to incorrect engine operation

Attackers began using pirated software sites and popular video platforms to distribute CountLoader and GachiLoader malicious downloads. This is reported by Anti-Malware.

Russians are warned about dangerous viruses on pirated sites and YouTube

According to analysts, the current campaign is built around CountLoader, a modular tool used as the first stage of multi-stage attacks. To get infected, you just need to try downloading a “cracked” version of the popular software. The user is redirected to the file hosting service, which contains an archive with additional encrypted content and documents with passwords. Once extracted, an executable file is launched, disguised as an installer, downloading malicious code from a remote server.

To gain a foothold in the system, CountLoader disguises itself as a system process that can be executed at high frequency for many years. The loader also analyzes installed security software, and when it detects individual solutions, it changes its behavior, reducing the risk of detection. Next, it collects information about the system and prepares to launch the next phase of the attack.

Experts note that the new version of CountLoader has expanded capabilities, including launching various file types, executing code in memory, delivering via USB drives, collecting detailed telemetry data, and erasing activity traces. In one documented case, the final payload was an ACR Stealer designed to steal sensitive data.

Check Point experts in turn reported another malicious campaign using GachiLoader, a downloader distributed through a network of hacked YouTube accounts. Attackers published videos with links to malicious “installers” for popular software. In total, about a hundred such videos were identified, which in total received more than 220 thousand views. Much of the content has been removed by Google.

GachiLoader has the ability to bypass security mechanisms, check administrative rights, and attempt to disable Microsoft Defender components. In one case, it was used to deliver the stolen Rhadamanthys.

Recommended For You

Google will stop supporting ChromeOS in 2034

February 5, 2026
Google will stop supporting ChromeOS in 2034

The American corporation Google will phase out the ChromeOS operating system by 2034. The Verge writes about this based on court documents published as part of antitrust proceedings...

Read more

In 2025, Russians will spend tens of billions of rubles on smart watches

February 4, 2026
In 2025, Russians will spend tens of billions of rubles on smart watches

In 2025, about 6.4 million smart watches and fitness bracelets were sold in Russia for a total value of 46.5 billion rubles. Gazeta.Ru was informed about this by...

Read more

SpaceX: Falcon 9 flights suspended due to incorrect engine operation

February 4, 2026
SpaceX: Falcon 9 flights suspended due to incorrect engine operation

The American company SpaceX, owned by billionaire Elon Musk, suspended flights of the Falcon 9 rocket due to problems. This was reported on the company's page on the...

Read more

Is it true that trees can explode due to frost?

February 4, 2026
Is it true that trees can explode due to frost?

Kamchatka is not the only region experiencing record frosts and snowfall. The US government is warning people in many states about unprecedented cold caused by the polar vortex;...

Read more

C/2026 A1 approaches Earth and will be torn apart

February 4, 2026

Comet C/2026 A1 approaching Earth will no longer exist when it collides with the Sun's tremendous heat. Evgeny Burmistrov talks about this. “Two factors contribute to ensuring nuclear...

Read more
Next Post
In Russia they talk about the consequences of the outbreak of war between the US and Venezuela

In Russia they talk about the consequences of the outbreak of war between the US and Venezuela

Related News

Moscow Zoo chose the name for the baby Kapibara

Moscow Zoo chose the name for the baby Kapibara

August 24, 2025

AI sends dozens of people to find imaginary hot springs in Tasmania

January 30, 2026
Archaeologists have discovered Viking treasure under a highway in Sweden

Archaeologists have discovered Viking treasure under a highway in Sweden

November 6, 2025
EU leaders criticized for hypocritical game of “military threat”

EU leaders criticized for hypocritical game of “military threat”

January 9, 2026
The political scientist explained Trump's threats to change his position against Russia

The political scientist explained Trump's threats to change his position against Russia

September 4, 2025
Sakhalin and Kurili soon performed a climate test

Sakhalin and Kurili soon performed a climate test

August 7, 2025

A 6.4 magnitude earthquake occurred off the coast of Indonesia.

October 29, 2025
In the sky in Ukraine, a mysterious green ray was noticed

In the sky in Ukraine, a mysterious green ray was noticed

August 26, 2025
Samsung is preparing to cut production of cheap SATA SSDs

Samsung is preparing to cut production of cheap SATA SSDs

December 14, 2025
  • Politics
  • World
  • Investing
  • Finance
  • Technology
  • Health
  • Market
  • Press release

© 2025 Victoria Sun

No Result
View All Result
  • Home
  • Politics
  • Finance
  • Health
  • Investing
  • Market
  • Technology
  • World
  • Press release

© 2025 Victoria Sun

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?

Warning: array_sum() expects parameter 1 to be array, null given in /www/wwwroot/vicsun.org/wp-content/plugins/jnews-social-share/class.jnews-social-background-process.php on line 111