Tech Update – Beware this malware: It “annoys” you into handing over login details

  1. Home
  2. Cybersecurity
  3. Tech Update – Beware this malware: It “annoys” you into handing over login details

Malware

How cautious are you and your team with online security? You know about phishing scams, dodgy downloads, and not clicking suspicious links, right?

But an even sneakier new type of malware (malicious software) wants to frustrate you into giving up your Google login details.

The malware doesn’t have a catchy name yet.

But it’s part of a larger threat known as “Amadey,” which has been on the rise since August.

It forces your PC into “kiosk mode” (a setting often used on public computers that only lets you access one window). This allows it to lock your browser in full-screen mode, hiding all your usual navigation buttons, such as the address bar and menus. Then, you get sent to a fake Google password reset page.

Usually, you’d just hit the Esc or F11 keys to get out of full-screen mode, right? Well, not this time. It won’t work if the malware has infected your PC. It wants to confuse you into thinking you must enter your password to solve the problem.

The password reset page will look like a real Google page. But the second you type in your details, a second piece of malware hiding in the background steals them, falling right into the hands of cyber criminals.

It’s pretty scary stuff.

But here’s the good news: You can break free without giving up your details.

If your browser gets stuck in full-screen mode, try hitting ALT+TAB to switch tasks or ALT+F4 to force the window to close. Otherwise, try closing it through your task manager (CTRL+ALT+DELETE).

If all else fails, restart your PC by holding down the power button or unplugging it, then get an expert (like us) to look at the malware.

Prevention is always the best approach, though. Be wary if your computer starts behaving strangely, especially if your browser suddenly goes into full-screen mode and won’t let you navigate away.

Avoid clicking on suspicious links or downloading attachments you aren’t sure about. And as tempting as it might be to get past an annoying screen, never enter your password unless you’re 100% sure the website is legit.

We can teach your team how to avoid the latest scams. Contact us.

Menu