DeepSeek Impersonation Ads Infect Users with Malware

Fake DeepSeek Ads Trick Users into a Trap

Cybercriminals are using fake ads on Google to trick people into downloading dangerous malware. This time, they are targeting DeepSeek, a popular AI platform. DeepSeek became well-known this year after launching its first AI models, DeepSeek-R1-Zero and DeepSeek-R1. These models impressed many with their reasoning skills, making DeepSeek a famous name in the AI world.

DeepSeek’s popularity has made it a target for hackers. Criminals are now creating fake ads that show up in Google’s search results. When users click these ads, they are sent to a malicious website. The site looks like DeepSeek’s official page, but it is fake. It has a download link that installs a Trojan virus instead of the real AI tool.

How the Malware Works

When a user clicks the download button, the site sends a Trojan virus. It is hidden inside a Microsoft Intermediate Language (MSIL) file. This Trojan is called Heracles. It is an info-stealer that mainly targets cryptocurrency wallets.

Once the malware infects a device, it can steal sensitive information. This includes login details and financial data. It can also access crypto wallets and drain funds. The malware may take over online accounts, putting victims at risk of identity theft and fraud.

Malwarebytes researchers found that the Heracles Trojan comes from Russia. It is part of a larger trend. Cybercriminals are using fake ads on Google to spread malicious software. They often pretend to be well-known brands.

How to Spot Fake Ads and Stay Safe

Experts warn that fake ads can look real. However, there are clues to spot them. Suspicious URLs are one sign. Fake ads use web links that look slightly different from the real DeepSeek site. For example, instead of deepseek.com, the fake ad may lead to a similar but fake website.

Fake advertisers are another sign. On Google search results, users can click the three vertical dots next to the ad URL to check the advertiser’s information. If it’s not DeepSeek’s official advertiser account, it’s likely fake.

Security experts strongly advise against clicking on sponsored search results altogether. While most ads are legitimate, cybercriminals have found ways to bypass Google’s security measures and display malicious ads.

How Cyber Attacks on Industrial Control Systems Can Endanger Lives ?

Google’s Security Struggles

Google has been fighting fake ads for years. However, the problem continues. Malwarebytes researchers say Google cannot fully stop fake ads. As a result, cybercriminals keep making malicious ads. These fake ads often rank higher than real brands in search results.

In Google’s 2023 Ads Safety Report, the company claimed it had blocked over 5.5 billion ads and suspended 12.7 million advertiser accounts for violating policies. However, despite these efforts, cybercriminals continue to find loopholes, often using fake or compromised advertiser accounts.

In response to this latest incident, Google confirmed that they had detected the malware campaign before it was publicly reported. The company said it removed the fraudulent ads and suspended the advertiser’s account. However, this incident is a reminder that malicious actors are constantly adapting and exploiting online platforms.

Cyber Attacks on Connected Cars

Renuka Bangale
Renuka Bangale
Renuka is a distinguished Chartered Accountant and a Certified Digital Threats Analyst from Riskpro, renowned for her expertise in cybersecurity. With a deep understanding of cybercrimes, malware, cyber warfare, and espionage, she has established herself as an authority in the field. Renuka combines her financial acumen with advanced knowledge of digital threats to provide unparalleled insights into the evolving landscape of information security. Her analytical prowess enables her to dissect complex cyber incidents, offering clarity on risks and mitigation strategies. As a key contributor to Newsinterpretation’s information security category, Renuka delivers authoritative articles that educate and inform readers about emerging threats and best practices.

TOP 10 TRENDING ON NEWSINTERPRETATION

Reports say Trump tried to reach Modi four times but White House disputes claim

A Battle Over Tariffs and Oil The relationship between the...

KillSec ransomware group claims attack on Brazil healthcare software provider MedicSolution

A Dangerous Cyberattack on Healthcare Brazil’s healthcare industry has been...

Northern Virginia delivers shock victory as Walkinshaw flips key seat against White House agenda

Democrats have scored a key victory in Virginia as...

UK ambassador Mandelson admits ‘albatross of regret’ over ties to Epstein’s web of deceit

Peter Mandelson, the United Kingdom’s ambassador to the United...

Newsom draws Megyn Kelly’s ire after sharing old Trump clips to boost online trolling campaign

A sharp exchange unfolded when a well-known media host...

Shocking Files Reveal Bill Clinton Letter in Epstein’s Infamous ‘Birthday Book’

Oversight Committee Releases New Epstein Records The House Oversight Committee...

McGregor channels Trump populism with Musk support in high-stakes Irish presidential race

In early September 2025, Ireland was taken by surprise...

Federal authorities seize $3 million in crypto linked to ransomware that hit US hospitals

Federal authorities have seized nearly $3 million worth of...

Bernie Sanders backs Zohran Mamdani in New York City mayor race citing grassroots momentum

A major political figure has stepped into the New...

JPMorgan handled $1.1 billion for Jeffrey Epstein despite warnings of criminal ties and reputation risk

JPMorgan Chase, one of America’s biggest banks, had a...

Reports say Trump tried to reach Modi four times but White House disputes claim

A Battle Over Tariffs and Oil The relationship between the...

KillSec ransomware group claims attack on Brazil healthcare software provider MedicSolution

A Dangerous Cyberattack on Healthcare Brazil’s healthcare industry has been...

UK ambassador Mandelson admits ‘albatross of regret’ over ties to Epstein’s web of deceit

Peter Mandelson, the United Kingdom’s ambassador to the United...

Shocking Files Reveal Bill Clinton Letter in Epstein’s Infamous ‘Birthday Book’

Oversight Committee Releases New Epstein Records The House Oversight Committee...

Related Articles

Popular Categories

error: Content is protected !!