Roboto Font Condensed install malware on your computer

The new MalwareBreakdown security researcher published an analysis of a new type of SocEng (technical method of breaking into the system) forged EITest HoeflerText. When a user visits the infected site, he / she will see a message saying that the Roboto Condensed font cannot be found and requires the user to download and install this font package to view the page. If installing one of these font packages, the computer will be infected with Trojan poisoning, monitor computer activity and dig mines.

How does the attack through the Roboto Condensed font work?

To perform this type of attack, it is necessary to first hack a website and edit it so that the JavaScript code is added to each page on the website. When the script has been executed, it will make the text on the page be scrawled, looking like it is missing a font. JavaScript will display a dialog box saying that you need to download the font package to continue viewing the page.

Below is an example of this scenario.

Roboto Font Condensed install malware on your computer Picture 1
Examples of JavaScript snippets are inserted into the web page

Visit this hacked site, you will see the word is distorted and unreadable. However, this scenario does not always work smoothly on hacked pages. For example, in the article of MalwareBreakDown, https://malwarebreakdown.com page displays text with nonsense characters.

Roboto Font Condensed install malware on your computer Picture 2
Update Roboto Condensed font to continue viewing the page

But on another hacked page, the page still displays normal text.

Roboto Font Condensed install malware on your computer Picture 3
The text displayed normally on the page has been hacked

If you use Chrome, the font download will be called Chrome Font Pack. If using Mozilla, it will be named Mozilla Font Pack.

Roboto Font Condensed install malware on your computer Picture 4
Font download notification on Firefox Mozilla

Once you click Update, the script will download the file called chromefp60.exe if you use Chrome or mozillafp60.exe if you use Firefox. At that time, the alert will turn into a save guide and install the downloaded file.

Roboto Font Condensed install malware on your computer Picture 5
Instructions for executing, installing downloaded files

However, the good news is that the download is not automatic, but the victim must install it manually to be infected. The attacker hopes that by making text distortions and pseudo-warnings from the browser about missing fonts, they can trick users into running the file. Once the file is executed, the malware will be installed on the computer.

Font Roboto Condensed installing Ursnif malicious code, digging and downloading Trojans

According to MalwareBreakDown, the attacker behind Roboto Condensed Font Pack always rotates using different types of malware. Currently, these malware include digging tools for Monero mines, Trojan.Downloaders and Ursnif computer activity tracking malware. Although no good but most dangerous malware is Ursnif.

Ursnif silently runs in the background, while recording whatever you type on the keyboard, what web page you visit or if you copy any text to the clipboard. This can cause sensitive information about commercial transactions, user names - passwords, financial information .

Because an attacker who constantly changes malware types will install them on the user's computer, it will not be surprising if we see extortion in the future.

Chrome Font Pack warning text

The "Roboto Condensed" font was not found.

Những trang web bạn đang thử tải được hiển thị không đúng Hãy sửa lỗi lỗi và hiển thị tiếp, bạn có thể cập nhật "Chrome Font Pack".
Manufacturer: Google Inc. All Rights Reserved.
Current version: Chrome Font Pack 54.0.2785.89
Latest version: Chrome Font Pack 60.0.3112.90

Mozilla Font Pack warning text

The "Roboto Condensed" font was not found.

Những trang web bạn đang thử tải được hiển thị không đúng Hãy sửa lỗi lỗi và hiển thị tiếp, bạn cần cập nhật "Mozilla Font Pack".
Manufacturer: Mozilla Corporation.
Current version: Mozilla Font Pack 53.0.2785.89
Latest version: Mozilla Font Pack 60.0.3112.90

5 ★ | 1 Vote

May be interested

  • How to Install a Font on a MacHow to Install a Font on a Mac
    don't you just hate it when you find the best font and you don't know how to install it? fonts can make or break a piece of writing, reminding us always that presentation matters. still, installing fonts is pretty easy. to install fonts on...
  • How to install fonts on GIMPHow to install fonts on GIMP
    if you want to use third-party fonts for images, read the following guide to know how to install fonts on gimp and use them for your project.
  • How to install and remove fonts on MacHow to install and remove fonts on Mac
    if you are not satisfied with the built-in fonts in mac os, why not download a new font from a free website and install it on your mac?
  • How to install fonts on Windows (Win7 - Win8 - Win10)How to install fonts on Windows (Win7 - Win8 - Win10)
    instructions on how to install fonts on win 7 - win8 and win 10 quickly, accompanied by how to remove the font and set the font to the default windows.
  • How to change fonts in Windows 11How to change fonts in Windows 11
    tired of windows 11's default fonts? here's how to set them to whatever you like. this article shows you how to change the windows 11 system font so that different areas of the os will use the font type you prefer.
  • Set the default font in Word 2007 2010 2013Set the default font in Word 2007 2010 2013
    before drafting, you usually install the font and font size in the first font. it is simple but if you have to work a lot with word, then setting the font and font size will be very time consuming.
  • How to install and remove fonts on LinuxHow to install and remove fonts on Linux
    the linux system has many integrated fonts but you still can't find the font you need. downloading and installing new fonts is very easy on linux and we will show you how to do this in the following article.
  • Set the default font in ExcelSet the default font in Excel
    set default font in excel - font and font size of excel do not match the needs of the process you work with excel. you want to change the default font and font size so that whenever you open excel, you do not need to take time to install fo
  • What is Icon Font and how to create Icon FontWhat is Icon Font and how to create Icon Font
    you've certainly heard about icons and fonts, so what is font icon? today, we will introduce readers to icon font definition, why it became so popular and how to use it to make your website more vivid. let's get it started.
  • How many types of malware do you know and how to prevent them?How many types of malware do you know and how to prevent them?
    currently, computer criminals use a lot of different malware (malware) to attack the system. here are some of the most common malware types and ways to prevent them.