Over 70 Fake Windows App Sites Could Turn Trusted Downloads Into Malware
ID: 704b05e2-25c7-53cb-82b6-70687e6b9a62
STIX ID: report--704b05e2-25c7-53cb-82b6-70687e6b9a62
Feed Name: GBHackers
A researcher uncovered a cluster of 72+ impersonation domains impersonating popular Windows tools (PowerToys, EasyBCD, WinUtil, CrystalDiskMark) that currently redirect to legitimate Microsoft Store links but exhibit infrastructure and behaviors (SEO manipulation, domain impersonation, WHOIS privacy, potential TDS embedding) consistent with a staged campaign to later deliver trojanized installers; no confirmed malware distribution yet, but the scale and tactics indicate high-risk potential and require continuous monitoring and takedown efforts.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
