
Fake Claude App and Alert Apps Drive New Scams
This roundup describes multiple real-world campaigns where attackers trick people into installing malicious software that looks legitimate (a fake Claude…
A malvertising campaign is luring users with fake free “AI tool” downloads (recipe/meal-planning apps) delivered via paid search ads. Even when Microsoft Defender later quarantines the detected file, the installer can already have created persistence (Startup shortcut and HKCU Uninstall key), meaning the device may still be compromised. The article provides specific domains, hosting infrastructure, and the exact persistence checks defenders should perform.
This campaign relies on paid search ads to promote fake free Windows "AI tools," currently themed as recipe and meal-planning apps. Users searching for free software click a paid result, land on a legitimate-looking site, and download an installer that does not require admin rights. Once run, the installer writes files to AppData, adds a Start Menu shortcut, creates an HKCU Uninstall registry key, and drops a Startup folder shortcut for boot persistence. The loader itself, referred to as math.dll, is injected in memory rather than dropped to disk, which limits what file-based scanning alone can catch.
The campaign's success comes down to timing and rotation. Persistence was observed being created around 21 seconds into execution, while Microsoft Defender's quarantine action occurred around 29 seconds later. That gap means the malicious artifacts can already be embedded on the endpoint by the time an alert fires. On top of that, the operators rotate lure brand names and domains quickly, for example GiveMeRecipe, KitchenCanvas, and FoodFormula, all fronting the same underlying toolkit. This rotation means indicators like brand names or domains have a short useful life for detection purposes.
Any of these persistence artifacts on a host that triggered a MediaArena-related alert should be treated as a sign the device may still be compromised, even if the file itself was quarantined.
Defenders should treat a quarantine alert as the start of an investigation rather than the end of one. Verifying whether anything executed and whether persistence artifacts exist is a more reliable process than relying on the quarantine result alone. Because brand names and domains rotate quickly, detection strategies should lean on behavior-based signals and known persistence mechanisms, such as Startup folder shortcuts and HKCU Uninstall keys, rather than static indicators. End users across all departments, not just technical staff, should be made aware that free "AI tool" ads served through paid search are a common lure format, so they think twice before downloading unfamiliar software promoted this way. SOC and incident response teams should incorporate these specific artifact checks into their playbooks for any related alert.
Mirage safely runs attacks like this one against your own team, so you find out what happens before a real adversary does.
It is a malvertising campaign that uses paid search ads to promote fake free Windows AI tools, currently themed as recipe and meal-planning apps, to trick users into downloading malicious installers.
Not necessarily. Persistence has been observed being written around 21 seconds into execution, while quarantine occurred around 29 seconds, meaning the malicious artifacts can already be in place before detection.
Defenders should look for a Startup folder shortcut tied to the app name and an HKCU Uninstall registry key mimicking a legitimate install. If either is present, the host should be treated as still compromised.
The campaign rotates lure brands and domains quickly, so any single brand or domain indicator has a short shelf life, making behavior and persistence artifacts more reliable signals to hunt on.
You search for a free AI meal-planning app, click a paid ad for “GiveMeRecipe,” and grab the Windows download. Looks legit, right? Behind that ad is a malvertising campaign. The fake AI app installer runs without admin rights, drops files into AppData, adds itself to your Start Menu, and quietly sets a Startup shortcut so it launches every boot. Here’s the trap: Microsoft Defender might pop up and quarantine MediaArena a few seconds later, but by then the damage is done. Persistence was created at around 21 seconds; quarantine hit at 29. The loader hides in memory, and the brand names, GiveMeRecipe, KitchenCanvas, FoodFormula, rotate constantly. So if you ever see MediaArena quarantined after installing a 'free AI' recipe tool from a paid ad, don’t assume you’re clean, open a ticket and tell IT to check your Startup folder and HKCU Uninstall keys for that app name.

This roundup describes multiple real-world campaigns where attackers trick people into installing malicious software that looks legitimate (a fake Claude…

Microsoft observed real-world campaigns where victims were tricked by “ClickFix” prompts into pasting a command into Windows Run, which then installed ACR…

Ukraine’s CERT-UA says Russian-linked attackers are using fake CAPTCHA prompts on hacked websites to trick people into running malicious PowerShell commands…

Researchers reported a real malware campaign where attackers trick people searching for Flash Player into installing a fake “Flash” installer that delivers the…

South Korean agencies and AhnLab warn that tools tied to North Korea’s Lazarus Group appear to be shared with the Gunra ransomware operation targeting South…

Attackers used fake Steam forum replies that looked like helpful troubleshooting steps for real gaming/PC problems. The posts tricked users into running…