Trojan Trouble: Indian Software Installers Hijacked to Steal Your Data!

Installers for Notezilla, RecentX, and Copywhiz by Conceptworld were trojanized to distribute information-stealing malware, discovered by Rapid7 on June 18, 2024. The issue was fixed within 12 hours on June 24. Users who downloaded these installers in June 2024 should check for system compromises.

Hot Take:

Well, someone decided to take the concept of “Conceptworld” a bit too literally and added a world of trouble with trojanized installers. Guess they thought stealing your browser credentials and crypto wallets was a good idea. Spoiler alert: it wasn’t.

Key Points:

  • Three software products from Conceptworld – Notezilla, RecentX, and Copywhiz – were compromised with information-stealing malware.
  • The malware-laden installers could steal browser credentials, cryptocurrency wallet information, and more.
  • Rapid7 discovered the breach on June 18, 2024, and Conceptworld remediated it within 12 hours of being informed.
  • The malware sets up persistence via a scheduled task, executing its main payload every three hours.
  • Users who installed these software products in June 2024 should check for signs of compromise.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here