Connect with us

Technology

Fake Windows update installs hidden malware

Published

on

Fake Windows update installs hidden malware

NEWYou can now listen to Fox News articles!

If you’ve ever clicked “Check for updates” and trusted what you saw, you’re not alone. That’s exactly what this latest scam is counting on.

The page mimics official branding, includes a believable knowledge base number and presents a big blue download button that feels familiar.

The catch? The download installs malware designed to steal passwords, payment details and account access.

According to researchers at Malwarebytes Labs, a cybersecurity research and threat intelligence team inside Malwarebytes, the site uses a typosquatted domain that looks close enough to a real Microsoft URL to fool a quick glance. That small trick is often all it takes.

Advertisement

APPLE APP PASSWORD SCAM EMAIL WARNING
 

Cybersecurity researchers warn a fake Microsoft update site uses a look-alike URL and a familiar download button to deliver data-stealing malware. (Michael Nagle/Bloomberg via Getty Images)

Sign up for my FREE CyberGuy Report

  • Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox.
  • For simple, real-world ways to spot scams early and stay protected, visit CyberGuy.com – trusted by millions who watch CyberGuy on TV daily.
  • Plus, you’ll get instant access to my Ultimate Scam Survival Guide free when you join. 

Why this fake Windows update malware slips past detection

At first glance, nothing seems off. The file looks like a standard Windows installer. It even lists “Microsoft” in its properties. That’s where this attack gets clever. Instead of using obvious malicious code, the attackers built the installer with legitimate tools and layered the attack in stages. Each piece looks harmless on its own.

Here’s what’s happening behind the scenes:

  • The installer launches what appears to be a normal app
  • That app quietly runs hidden scripts
  • A disguised process loads a full Python environment
  • Data theft tools activate in the background

Because each step looks routine, many security tools fail to flag it right away. Researchers also noted that antivirus engines initially showed zero detections for key parts of the attack. That does not mean the file is safe. It means the malicious behavior is well hidden.

What this fake Windows update malware is stealing

Once installed, the malware gets to work fast. It collects details about the infected device, including location and IP address. Then it reaches out to remote servers to receive instructions and upload stolen data.

Advertisement

The targets include:

  • Saved browser passwords
  • Login sessions and cookies
  • Payment details
  • Discord account tokens

It even tries to shut down other processes on your system to avoid interference while it works. In some cases, it modifies apps like Discord to intercept account activity in real time.

How the fake Windows update malware stays on your system

This malware is designed to stick around. It creates entries that look like normal system processes, so they blend in. One registry entry mimics Windows Security Health, which most users would ignore. It also drops a shortcut in your startup folder with a familiar name like Spotify. That makes it easy to overlook. Two different persistence tricks mean it can survive a reboot and keep running.

FAKE WINDOWS UPDATE PUSHES MALWARE IN NEW CLICKFIX ATTACK
 

A fake Windows update page is tricking users into downloading malware that steals passwords, payment details and account access. (Beata Zawrzel/NurPhoto)

Why this fake Windows update scam feels so real

There’s a bigger trend behind this. Researchers say campaigns like this often target regions where large data breaches have already exposed personal information. When attackers already know your name, provider or habits, they can build scams that feel tailored to you. That makes a fake Windows update page far more believable than a generic phishing email.

Advertisement

It also highlights something important. Today’s malware often hides inside legitimate tools and trusted frameworks. That makes it harder to detect and easier to trust. This campaign shows how far scammers have come. They are no longer relying on sloppy emails or obvious fake links. Instead, they are building layered attacks that look and behave like trusted software.

Even experienced users can get caught off guard when everything appears normal. The biggest takeaway is simple. A clean scan result or a familiar interface does not guarantee safety.

Microsoft says it’s aware of the threat

Microsoft confirmed it is tracking this type of activity and urges users to be cautious when downloading updates from unfamiliar sources. 

“We are aware of reports of fraudulent websites impersonating Microsoft, and we actively work to detect and disrupt malicious activity across the internet,” A Microsoft spokesperson told CyberGuy. “We encourage customers to be cautious of unexpected prompts or downloads and to verify that they are interacting with legitimate Microsoft domains. As a best practice, we recommend users verify the legitimacy of a link by going directly to our website from your own saved favorite, from a web search, or by typing the domain name yourself.”

For more guidance on how to protect against online phishing scams, you can refer to Microsoft’s official support page at support.microsoft.com.

Advertisement

MICROSOFT CROSSES PRIVACY LINE FEW EXPECTED
 

A convincing Windows update scam is spreading malware that can grab saved passwords, cookies, payment data and Discord tokens. (Todor Tsvetkov/Getty Images)

Ways to stay safe from fake Windows update malware

You don’t need to be a security expert to avoid this. A few habits make a big difference.

1) Only update Windows from your settings

Go to Settings > Windows Update and check for updates there. Avoid downloading updates from websites. 

2) Double-check the URL

Real Microsoft pages use microsoft.com. Anything else, even if it looks close, should raise a red flag.

Advertisement

3) Be cautious with urgent update prompts

If a site or message pressures you to install an update, stop and verify it manually. 

4) Use strong antivirus software with behavior detection

Traditional antivirus software, which often comes built into your device or as basic security software, mainly looks for known threats using signature matching, which means it can miss new or well-hidden attacks like this one. Strong antivirus software uses behavior detection to monitor what programs are doing in real time, helping flag suspicious activity even if the malware hasn’t been seen before.  Get my picks for the best 2026 antivirus protection winners for your Windows, Mac, Android & iOS devices at Cyberguy.com.

5) Use a data removal service to limit your exposure

If your personal information is already circulating online from past breaches, it can make scams like this more convincing. A data removal service helps reduce how much of your information is publicly available, making it harder for attackers to target you with tailored phishing attempts. Check out my top picks for data removal services and get a free scan to find out if your personal information is already out on the web by visiting Cyberguy.com

6) Turn on two-factor authentication

Two-factor authentication (2FA) adds a second layer of protection if your passwords are stolen.

7) Avoid downloading installer files from unknown sites

Legitimate updates rarely require manual downloads. 

Advertisement

Kurt’s key takeaways

Fake updates are one of the most effective tricks because they tap into something we all trust. Keeping your system secure should not put you at risk, yet that’s exactly what attackers are exploiting here. The safest move is to slow down, verify where updates come from and stick to built-in tools whenever possible.

Are tech companies doing enough to keep fake updates from putting your data at risk? Let us know your thoughts in the comments below. Let us know by writing to us at Cyberguy.com.

CLICK HERE TO DOWNLOAD THE FOX NEWS APP

Sign up for my FREE CyberGuy Report

  • Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox.
  • For simple, real-world ways to spot scams early and stay protected, visit CyberGuy.com – trusted by millions who watch CyberGuy on TV daily.
  • Plus, you’ll get instant access to my Ultimate Scam Survival Guide free when you join.

Copyright 2026 CyberGuy.com. All rights reserved.

Advertisement
Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Technology

It’s the last day of Prime Day — here are over 140 great deals to choose from

Published

on

It’s the last day of Prime Day — here are over 140 great deals to choose from

We’ve arrived at the final day of Prime Day, which at this point should probably be called “Prime Week.” We’ve found discounts on all manner of gadgets, including TVs, smart home tech, chargers, headphones, and more. Some of the best deals have started selling out at some retailers, so if you’ve been craving a popular upgrade like the AirPods Max 2, time is running low.

The good news is that our team is still hard at work, and in addition to the deals that remain in stock, the retailers sometimes save up a few extras for the last day (like this Echo Spot that got a little cheaper). This roundup is our pride and joy; the culmination of over four days of deal hunting by our entire team. We’ve worked tirelessly for the last week and arrived at a list of over 120 discounted items (and growing) that we’re happy to share with you.

Of course, our Prime Day coverage spans every category The Verge staff touches, and is a great place to explore the full breadth of discounts we’re able to find on the stuff we’ve tested, regularly use, and love. We genuinely enjoy helping you save on cool tech and fun gadgets that are actually worth your hard-earned money, especially when everything is getting more expensive.

Smartwatch and wearable deals

Home theater and speaker deals

Advertisement

Update, June 26th: Struck some out of deals near the end of the sale.

Continue Reading

Technology

Ohio robot cop retires after zero arrests

Published

on

Ohio robot cop retires after zero arrests

NEWYou can now listen to Fox News articles!

Dublin, Ohio, gave a robot cop a trial run inside a public parking garage. Less than a year later, the machine was off the job and headed back to its maker.

DubBot, a Knightscope security robot used by the Dublin Police Department, was meant to help deter crime, support emergency response and give the city another way to monitor a busy public space. However, its patrols led to zero arrests, tickets or criminal cases.

Now the failed pilot raises a bigger question nationwide. Should local leaders have to prove these machines work before putting them on patrol?

AI TO MONITOR NYC SUBWAY SAFETY AS CRIME CONCERNS RISE

Advertisement

Dublin’s robot cop pilot ended after its patrols led to zero arrests, tickets or criminal cases. (Knightscope)

Sign up for my FREE CyberGuy Report

  • Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox.
  • For simple, real-world ways to spot scams early and stay protected, visit CyberGuy.com trusted by millions who watch CyberGuy on TV daily.
  • Plus, you’ll get instant access to my Ultimate Scam Survival Guide free when you join.  

Ohio robot cop ends its parking garage patrol

DubBot began patrolling the Rock Cress Parking Garage in July 2025. The robot was one of Knightscope’s K5 Autonomous Security Robots, the tall white security machines built to move through public spaces and act as an extra set of eyes.

Dublin retired DubBot on May 12 after deciding the pilot no longer fit the city’s operational needs. The robot has since gone back to Knightscope.

The city’s public safety page now says the autonomous safety robot pilot has ended. It also notes that Dublin added other security measures at the Rock Cress garage, including entrance and exit gate arms and mirrors.

What the Ohio robot cop was supposed to do

DubBot was designed to support police operations, deter crime and give people another way to reach emergency help. The robot had 360-degree video cameras, two-way emergency communication and an emergency call button that could connect people with dispatchers.

Advertisement

In theory, that sounds useful. A robot moving through a parking garage could make people feel watched over. It could also give police a live look at an area without assigning an officer there full time.

WHEELED, RUGGED ROBOT DOG BUILT FOR EXTREME INDUSTRIAL MISSIONS

But let’s be real here. A camera on wheels still has to solve a real problem. Parking garages have awkward corners, quick encounters and plenty of moments where something can happen fast. A robot moving at walking speed may create a visible presence. However, presence alone does not equal public safety results.

How much the Ohio robot cop cost

Dublin spent $128,080 in the first year of the agreement. The city expects a reimbursement from Knightscope of about $60,500, bringing the final cost down to $67,548.

The original plan was larger. Dublin had planned to pay $238,440 for two robots over two years. However, the second robot never rolled out. It was supposed to serve Riverside Crossing Park, but development needs and infrastructure limits kept it from going into service.

Advertisement

SMART STREET SENSORS COULD BE WATCHING YOUR CITY NEXT

That leaves one robot, one parking garage and a pilot that ended with no arrests, no criminal cases and no tickets.

The city also collected no other performance metrics because the pilot was meant to test the robot before any expansion.

That part should make taxpayers pause. When a city tests an expensive public safety tool, people deserve a clear way to judge whether it worked.

US TARGETS CHINESE ROBOTS OVER SECURITY FEARS

Advertisement

Why cities keep testing robot cops

You can understand why local governments keep looking at these robots. Police departments are stretched. Public spaces need coverage. Parking garages, parks and transit hubs can be hard to monitor with people alone.

Security robots promise a lot. They can move around, stream video, offer a help button and act as a visible deterrent. They also give a city a technology-forward image, which can sound appealing during a public safety pitch.

The challenge comes after the rollout. When a city says a robot deters crime, officials should explain how they will measure deterrence. When the robot supports emergency response, the city should track how often people use the help button. When the robot helps investigations, officials should show whether its video helped solve cases. Without that kind of follow-up, a robot can become a pricey symbol rather than a useful safety tool.

HUMANOID ROBOTS JUST GOT A WORKPLACE SAFETY SYSTEM

Other robot cop pilots have struggled too

Dublin is hardly the only city to test a Knightscope K5 and then move on. New York City tried a K5 robot in the Times Square subway station. That pilot ended after several months. Reports at the time noted that officers had to chaperone the robot and that the machine could not use stairs.

Advertisement

San Antonio International Airport also tested a Knightscope robot. That trial ran into technical problems, including navigation issues, camera focus problems and trouble with live video and audio feeds.

Those cases do not prove that every security robot will fail. They do show that public spaces are tough testing grounds. A robot may look impressive in a demo, then struggle when crowds, tight spaces, doors, stairs and real people get involved.

The Knightscope K5 security robot was designed to monitor public spaces and connect people with emergency dispatchers. (Knightscope)

Robot cops raise privacy questions

The other issue here is privacy. Dublin has a broader public safety technology program that includes drones, license plate readers, security cameras, body-worn cameras and facial recognition technology under a formal policy. Add a roaming robot with cameras and emergency communication, and residents may have fair questions.

What does the robot record? Who can access the footage? How long does the city keep it? Does the system use facial recognition? What happens when someone presses the emergency button? What data goes to the company?

Advertisement

Cities should answer those questions before a robot starts patrolling public spaces. The point isn’t to reject every new tool. The point is to make sure public safety tech comes with public accountability.

AI DASHCAMS ENHANCE TRUCKER SAFETY WHILE RAISING PRIVACY CONCERNS

What this means to you

If a robot starts patrolling your local garage, mall, park or transit hub, do not get distracted by the cool tech factor. The first question should be: What does it actually do when something goes wrong?

Can it connect you to a real person fast? Is someone watching the video when it matters? Can it help during an emergency, or does it mostly record what has already happened?

But let’s be real here. If your tax dollars are paying for this kind of technology, your city should explain the goal before the robot rolls out. Otherwise, people may only learn whether it worked after the money has already been spent. New technology can sound impressive. However, results still count.

Advertisement

SCAMMERS CAN EXPLOIT YOUR DATA FROM JUST 1 CHATGPT SEARCH

Your phone holds your email, passwords, photos, banking apps and personal data. In this free CyberGuy Live replay, Kurt the CyberGuy walks you step by step through simple phone security fixes you can do at your own pace. You’ll learn how to improve your privacy settings, spot the latest phone scams, use trusted security tools and walk away with a simple checklist to stay protected. Watch the replay and get our checklist here:CyberGuyLive.com.

Kurt’s key takeaways

A robot cop patrolled a parking garage, led to zero arrests and then got sent back. That should make taxpayers ask some hard questions. But let’s be real here. If local leaders are paying for AI-powered public safety tools, they should explain what problem the tech solves, how success will be measured and what happens to the data it collects. Dublin deserves credit for ending the pilot when DubBot failed to deliver enough value. A robot can look like progress, but the real test is whether it makes people safer and gives taxpayers results they can actually see.

DubBot patrolled the Rock Cress Parking Garage in Dublin, Ohio, before the city ended the robot pilot program. (The City of Dublin)

Would you feel safer knowing a robot was watching your public space, or should your city have to prove the machine works before spending your tax dollars? Let us know by writing to us at CyberGuy.com.

Advertisement

Sign up for my FREE CyberGuy Report

CLICK HERE TO DOWNLOAD THE FOX NEWS APP

  • Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox.
  • For simple, real-world ways to spot scams early and stay protected, visit CyberGuy.com trusted by millions who watch CyberGuy on TV daily.
  • Plus, you’ll get instant access to my Ultimate Scam Survival Guide free when you join.

Copyright 2026 CyberGuy.com. All rights reserved.  

Advertisement
Continue Reading

Technology

Prime Day’s final hours bring rare discounts on Philips Hue smart lights

Published

on

Prime Day’s final hours bring rare discounts on Philips Hue smart lights

Philips Hue products don’t often see major discounts, which makes this year’s Prime Day deals especially notable. Prices have dropped significantly across much of the company’s smart lighting lineup, with deals on everything from smart bulb starter kits and sleep lamps to smart buttons. If you’ve been thinking about investing in Philips Hue, now is one of the best opportunities we’ve seen all year to do so for less.

Update, June 26th: Updated prices and availability and added a couple of deals, including a discount for the Philips Hue Bridge.

Continue Reading
Advertisement

Trending