Type above and press Enter to search. Press Esc to cancel.

Loading...
Close Menu
  • Biology
  • Chemistry
  • Earth
  • Health
  • Physics
  • Science
  • Space
  • Technology
Facebook X (Twitter) Instagram

Quantumis

  • Biology
  • Chemistry
  • Earth
  • Health
  • Physics
  • Science
  • Space
  • Technology
Facebook X (Twitter) Pinterest YouTube
Quantumis
Home » » Here is another reason why you should never click on ads to download software

Here is another reason why you should never click on ads to download software

Facebook Twitter Pinterest Telegram LinkedIn WhatsApp Email Reddit
Share
Facebook Twitter LinkedIn Pinterest Telegram Email Reddit

Imagine the following scenario. You want to download Google Authenticator, run a search on Google for the company's application, and click on the first link that appears.

The link looks good even though it is listed as sponsored. It shows Google's official site as the URL. When you check the advertiser, which you can on Google Search, you get confirmation that Google has verified the advertisers identity.

All good then? Not in the aforementioned case. If you would have downloaded the linked app, you would have installed malware-infested Authenticator application to your device. The application, which even came with a valid signature according to reports, installed the DeerStealer information-stealing malware on Windows devices.

Not the first case, likely not the last

Threat actors have managed to overcome the security systems of advertising companies such as Google numerous times in the past to plant malware ads on Google Search and elsewhere. We have reported on this numerous times already, for example here or here.

Just last year, it was reported that malware was distributed via Google Ads at an alarming rate. The situation has not improved.

These are often made to look like the legitimate product, and it is very difficult for the user to determine that they are not.

In the above case, everything checked out on first glance:

  • Correct Google Domain listed.
  • Google verified the advertiser.
  • App is signed.

Bleeping Computer asked Google about the impersonating of legitimate companies and people, and Google stated that threat actors are evading detection by creating thousands of accounts simultaneously and using text manipulation and cloaking to show reviewers and automated systems different websites than a regular visitor would see".

In other words, Google admits that it cannot protect users from malicious ads 100% of the time. While it boasts that it has removed "3.4 billion ads" and suspended "5.6 million advertiser accounts" in 2023, it still has not found a way to detect all malicious ads and advertisers on Google Search.

Sponsored links are not to be trusted

Any link in Search that is listed as sponsored or an ad should not be trusted, especially when it comes to downloading software or making financial transactions. This is the only consequence that users should draw from that statement.

Threat actors have abused search ads one to many times to make them trusted. Usually, all it takes is to scroll down a bit more until you find the first organic search results. There you should find the official website listing of the product.

What about you? Do you click on ads or sponsored results sometimes? What is your take away from the recent malicious advertising campaign? Feel free to leave a comment down below.

Share. Facebook Twitter Pinterest LinkedIn Email Reddit

Related Articles

Microsoft may finally be removing the Windows Control Panel

Google will disable some of its own Chrome extensions soon

Today marks the end of Microsoft Paint 3D - but not for everyone

Avast Free Antivirus: Security Starts with Good Practices

Broadcom makes VMware Fusion and Workstation free for all users

Google appears to be working on a better alias system for Gmail

This is the simplest option to upgrade Windows 11 on unsupported hardware

Samsung set to launch One UI 7 based on Android 15 for Galaxy S series

Claude AI's upcoming voice feature will transform the user experience

Meet Operator: The Advanced AI Tool That Can Make Purchases and Manage Expenses

Comment

Leave A Reply Cancel Reply

Trending News

Google is killing uBlock Origin in Chrome, but this trick lets you keep it for another year

Google Search adds links to archived webpages from Internet Archive's Wayback Machine

Winamp source code released, but developers criticize its restrictive license

How to upgrade to Windows 11 24H2 on unsupported hardware

Windows 10: Microsoft reveals ESU price tag for home users and a big catch

Firefox 133 comes with Bounce Tracking Protection and other enhancements

How to enable or disable Wi-Fi in Windows 11

AdGuard Mail: email alias and temp email service from the makers of the adblocker

A look at Firefox's improved Profiles Manager that just launched

Samsung unveils Galaxy S25 Series with advanced AI and top-tier specs

Follow Quantumis
  • Facebook
  • Twitter
  • YouTube
  • Pinterest
SciTech News
  • Biology News
  • Chemistry News
  • Earth News
  • Health News
  • Physics News
  • Science News
  • Space News
  • Technology News
Recent Posts
  • Microsoft may finally be removing the Windows Control Panel
  • Mozilla releases second Firefox 131 security update
  • Google Chrome: removal of uBlock Origin and other unsupported extensions has started
  • Broadcom makes VMware Fusion and Workstation free for all users
  • iVerify: Pegasus spyware infections may be much higher than previously thought
  • This is the simplest option to upgrade Windows 11 on unsupported hardware
Copyright © 2025 Quantumis. All Rights Reserved.
  • About
  • Contact
  • Privacy Policy
  • Terms of Use