Festive search words are a favorite with scammers as a lure to what they have to offer, as David Marcus had just recently warned about the Halloween-themed threats.
In a recent research, we have found that search results for “scary halloween pumpkin designs” could lead users to a hijacked webpage hosting rogue security products.


Upon clicking the hyperlink, the user is brought to a website hosted on xxx.allxxxxxshxxx.com. The website presents a fake “Windows Security Alert” window that is identical to the scam reported by Avelino Rico Jr in his blog. It warns the user of fake infections and requires the user to download a tool to remove them.

What happens after installing this tool is just the same as many other Rogue AV or FakeAlert stories we’ve reported about. This malware is now detected as FakeAlert-JW trojan.
Do watch out for this malware this Halloween season and keep your security products updated.
