logo

CPUID hacked to deliver malware via CPU-Z, HWMonitor downloads

ID: 5aad084a-c75e-5492-bda5-65977fc590c8

STIX ID: report--5aad084a-c75e-5492-bda5-65977fc590c8

Feed Name: Bleeping Computer

Threat Score
72/100

Date Published: 2026-04-10

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

Hackers briefly compromised a CPUID side‑API (≈6 hours, Apr 9–10) to swap official download links for CPU‑Z/HWMonitor to a trojanized HWiNFO installer (HWiNFO_Monitor_Setup); the payload is a multi‑stage, in‑memory loader with Inno Setup packaging and EDR/AV evasion techniques, flagged by some AV engines but original signed binaries were reportedly not altered.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.