{"id":4193,"date":"2022-05-25T02:09:07","date_gmt":"2022-05-25T07:09:07","guid":{"rendered":"https:\/\/truxgoservers.com\/blog\/?p=4193"},"modified":"2022-05-25T02:09:08","modified_gmt":"2022-05-25T07:09:08","slug":"vidar-info-stealer-tricks-you-with-fake-windows-11-installers","status":"publish","type":"post","link":"https:\/\/truxgoservers.com\/blog\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\/","title":{"rendered":"Vidar info-stealer tricks you with fake Windows 11 installers"},"content":{"rendered":"\n<p style=\"font-size:15px;font-style:italic;font-weight:100\">Vidar is a family of malware that primarily functions as an information stealer and is often seen as a channel to allow ransomware to be deployed. The malware was originally activated in late 2018.<\/p>\n\n\n\n<p style=\"font-size:15px;font-style:italic;font-weight:100\">We are here to talk about this threat because Security Researchers found an email malware campaign in February 2022 that delivers said info-stealer.<\/p>\n\n\n\n<p style=\"font-size:15px;font-style:italic;font-weight:100\">As we well know, this threat has been very active lately making its last appearance in March this year and now\u2026 They are using counterfeit Windows 11 installers which distribute Vidar data stealing malware.<\/p>\n\n\n\n<p style=\"font-size:15px;font-style:italic;font-weight:100\">Notably, Zscaler researchers cracked down on the appearance of newly registered domains posing as the actual download portal for the Microsoft Windows 11 operating system last month. The file on the fake website has been found to be an .ISO with the Vidar payload. <\/p>\n\n\n\n<p style=\"font-size:15px;font-style:italic;font-weight:100\">Telegram channels with the same command and control server addresses have also been opened on the social media profiles of threat actors. Attackers have been leveraging a static configuration for C2 access, as well as social media profiles as fallback URLs, according to the report, which also revealed that multiple versions of Adobe Photoshop have also been observed backdoored in a GitHub repository. <\/p>\n\n\n\n<p style=\"font-size:15px;font-style:italic;font-weight:100\">Such malware is frequently updated as we have seen to defeat signature scanning anti-malware products so we must do our part and avoid any suspicious links and sites.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Today we will talk about a threat that has been very active this year called Vidar, which tricks us with fake Windows 11 installers&#8230;..<\/p>\n","protected":false},"author":1,"featured_media":4194,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[10],"tags":[36],"class_list":["post-4193","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","tag-cybersecurity"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.4 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Vidar info-stealer tricks you with fake Windows 11 installers - Truxgo Server Blog<\/title>\n<meta name=\"description\" content=\"Today we will talk about a threat that has been very active this year called Vidar, which tricks us with fake Windows 11 installers.....\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/truxgoservers.com\/blog\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\/\" \/>\n<meta property=\"og:locale\" content=\"es_MX\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Vidar info-stealer tricks you with fake Windows 11 installers - Truxgo Server Blog\" \/>\n<meta property=\"og:description\" content=\"Today we will talk about a threat that has been very active this year called Vidar, which tricks us with fake Windows 11 installers.....\" \/>\n<meta property=\"og:url\" content=\"https:\/\/truxgoservers.com\/blog\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\/\" \/>\n<meta property=\"og:site_name\" content=\"Truxgo Server Blog\" \/>\n<meta property=\"article:published_time\" content=\"2022-05-25T07:09:07+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2022-05-25T07:09:08+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2022\/05\/Stealer.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1000\" \/>\n\t<meta property=\"og:image:height\" content=\"667\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Truxgo\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Escrito por\" \/>\n\t<meta name=\"twitter:data1\" content=\"Truxgo\" \/>\n\t<meta name=\"twitter:label2\" content=\"Tiempo de lectura\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutos\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\\\/\"},\"author\":{\"name\":\"Truxgo\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/person\\\/8b409c26449db6aa09724b45331e333e\"},\"headline\":\"Vidar info-stealer tricks you with fake Windows 11 installers\",\"datePublished\":\"2022-05-25T07:09:07+00:00\",\"dateModified\":\"2022-05-25T07:09:08+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\\\/\"},\"wordCount\":230,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2022\\\/05\\\/Stealer.jpg\",\"keywords\":[\"Cybersecurity\"],\"articleSection\":[\"Cybersecurity\"],\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\\\/\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\\\/\",\"name\":\"Vidar info-stealer tricks you with fake Windows 11 installers - Truxgo Server Blog\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2022\\\/05\\\/Stealer.jpg\",\"datePublished\":\"2022-05-25T07:09:07+00:00\",\"dateModified\":\"2022-05-25T07:09:08+00:00\",\"description\":\"Today we will talk about a threat that has been very active this year called Vidar, which tricks us with fake Windows 11 installers.....\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\\\/#breadcrumb\"},\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\\\/#primaryimage\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2022\\\/05\\\/Stealer.jpg\",\"contentUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2022\\\/05\\\/Stealer.jpg\",\"width\":1000,\"height\":667},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Vidar info-stealer tricks you with fake Windows 11 installers\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\",\"name\":\"Truxgo Server Blog\",\"description\":\"Cloud Server and Hosting Tutorials.\",\"publisher\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"es\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\",\"name\":\"Truxgo Server Blog\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/cropped-truxgo-logo-blanco.png\",\"contentUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/cropped-truxgo-logo-blanco.png\",\"width\":1250,\"height\":278,\"caption\":\"Truxgo Server Blog\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/person\\\/8b409c26449db6aa09724b45331e333e\",\"name\":\"Truxgo\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"caption\":\"Truxgo\"},\"sameAs\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\"],\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/author\\\/truxgo\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Vidar info-stealer tricks you with fake Windows 11 installers - Truxgo Server Blog","description":"Today we will talk about a threat that has been very active this year called Vidar, which tricks us with fake Windows 11 installers.....","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/truxgoservers.com\/blog\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\/","og_locale":"es_MX","og_type":"article","og_title":"Vidar info-stealer tricks you with fake Windows 11 installers - Truxgo Server Blog","og_description":"Today we will talk about a threat that has been very active this year called Vidar, which tricks us with fake Windows 11 installers.....","og_url":"https:\/\/truxgoservers.com\/blog\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\/","og_site_name":"Truxgo Server Blog","article_published_time":"2022-05-25T07:09:07+00:00","article_modified_time":"2022-05-25T07:09:08+00:00","og_image":[{"width":1000,"height":667,"url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2022\/05\/Stealer.jpg","type":"image\/jpeg"}],"author":"Truxgo","twitter_card":"summary_large_image","twitter_misc":{"Escrito por":"Truxgo","Tiempo de lectura":"2 minutos"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/truxgoservers.com\/blog\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\/#article","isPartOf":{"@id":"https:\/\/truxgoservers.com\/blog\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\/"},"author":{"name":"Truxgo","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/person\/8b409c26449db6aa09724b45331e333e"},"headline":"Vidar info-stealer tricks you with fake Windows 11 installers","datePublished":"2022-05-25T07:09:07+00:00","dateModified":"2022-05-25T07:09:08+00:00","mainEntityOfPage":{"@id":"https:\/\/truxgoservers.com\/blog\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\/"},"wordCount":230,"commentCount":0,"publisher":{"@id":"https:\/\/truxgoservers.com\/blog\/#organization"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\/#primaryimage"},"thumbnailUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2022\/05\/Stealer.jpg","keywords":["Cybersecurity"],"articleSection":["Cybersecurity"],"inLanguage":"es","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/truxgoservers.com\/blog\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/truxgoservers.com\/blog\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\/","url":"https:\/\/truxgoservers.com\/blog\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\/","name":"Vidar info-stealer tricks you with fake Windows 11 installers - Truxgo Server Blog","isPartOf":{"@id":"https:\/\/truxgoservers.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/truxgoservers.com\/blog\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\/#primaryimage"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\/#primaryimage"},"thumbnailUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2022\/05\/Stealer.jpg","datePublished":"2022-05-25T07:09:07+00:00","dateModified":"2022-05-25T07:09:08+00:00","description":"Today we will talk about a threat that has been very active this year called Vidar, which tricks us with fake Windows 11 installers.....","breadcrumb":{"@id":"https:\/\/truxgoservers.com\/blog\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\/#breadcrumb"},"inLanguage":"es","potentialAction":[{"@type":"ReadAction","target":["https:\/\/truxgoservers.com\/blog\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\/"]}]},{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/truxgoservers.com\/blog\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\/#primaryimage","url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2022\/05\/Stealer.jpg","contentUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2022\/05\/Stealer.jpg","width":1000,"height":667},{"@type":"BreadcrumbList","@id":"https:\/\/truxgoservers.com\/blog\/vidar-info-stealer-tricks-you-with-fake-windows-11-installers\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/truxgoservers.com\/blog\/"},{"@type":"ListItem","position":2,"name":"Vidar info-stealer tricks you with fake Windows 11 installers"}]},{"@type":"WebSite","@id":"https:\/\/truxgoservers.com\/blog\/#website","url":"https:\/\/truxgoservers.com\/blog\/","name":"Truxgo Server Blog","description":"Cloud Server and Hosting Tutorials.","publisher":{"@id":"https:\/\/truxgoservers.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/truxgoservers.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"es"},{"@type":"Organization","@id":"https:\/\/truxgoservers.com\/blog\/#organization","name":"Truxgo Server Blog","url":"https:\/\/truxgoservers.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/08\/cropped-truxgo-logo-blanco.png","contentUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/08\/cropped-truxgo-logo-blanco.png","width":1250,"height":278,"caption":"Truxgo Server Blog"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/person\/8b409c26449db6aa09724b45331e333e","name":"Truxgo","image":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","caption":"Truxgo"},"sameAs":["https:\/\/truxgoservers.com\/blog"],"url":"https:\/\/truxgoservers.com\/blog\/author\/truxgo\/"}]}},"_links":{"self":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/4193","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/comments?post=4193"}],"version-history":[{"count":1,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/4193\/revisions"}],"predecessor-version":[{"id":4195,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/4193\/revisions\/4195"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/media\/4194"}],"wp:attachment":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/media?parent=4193"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/categories?post=4193"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/tags?post=4193"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}