Hacked Zoom installers taking over PCs — protect yourself now

best free zoom backgrounds
(Image credit: Zoom)

Two more corrupted Zoom installers are out there waiting for people to download and run them, Trend Micro researchers reported today (May 21).

"These malicious fake installers do not come from Zoom's official installation distribution channels," researchers Raphael Centeno and Llallum Victoria said in a blog post. "One of the samples installs a backdoor that allows malicious actors to run malicious routines remotely, while the other sample involves the installation of the Devil Shadow botnet in devices."

The installers aren't quite "fake," as they do indeed install Zoom on your PC. But they are noticeably larger in file size than the normal Zoom installer, thanks to the extra malware, and take longer to run. You won't find them at the official Zoom download page.

To make sure you're not infected by either of these pieces of malware, only get Zoom software from the Zoom website. You should also be running one of the best antivirus programs, which will detect both of the bad bugs. 

In fact, you don't need to install Zoom software to join a Zoom meeting -- more information on that below.

Who's Zooming who?

The first of these two corrupted installers terminates any existing remote-desktop software, then opens up an obscure network port, steals the login credentials of the PC's legitimate user and allows its own remote attackers to connect to the PC. 

The second bad installer reaches out to a remote server controlled by attackers and sets up its malware component to run upon system startup. It's designed to hijack your webcam, take screenshots, log keystrokes and penetrate your firewall. It also checks to see what kind of antivirus software you might have installed.

"Both pieces of malware can be used to infiltrate systems of high-value targets in enterprises or non-business industries to steal proprietary and confidential information," the Trend Micro researchers wrote. 

These aren't the first instances of Zoom installers being corrupted by malware. In early April, the same Trend Micro researchers found a cryptocurrency miner embedded in a working Zoom installer. At the end of April, Trend Micro found a remote-access Trojan, basically a PC hijacking kit, smuggled in another Zoom installer program.

How to use Zoom without Zoom software

Despite what Zoom would have you believe, you can join a Zoom meeting without having to install anything. Any recently updated web browser will do. 

When you click on a Zoom meeting link, a browser page will pop up asking you to install Zoom. Ignore that and try to click on the meeting link in the web page a couple of more times. 

Eventually, you'll see a link in small print inviting you to join the meeting through your browser. Click that and you'll be in, although you may need to create a Zoom account.

TOPICS
Paul Wagenseil

Paul Wagenseil is a senior editor at Tom's Guide focused on security and privacy. He has also been a dishwasher, fry cook, long-haul driver, code monkey and video editor. He's been rooting around in the information-security space for more than 15 years at FoxNews.com, SecurityNewsDaily, TechNewsDaily and Tom's Guide, has presented talks at the ShmooCon, DerbyCon and BSides Las Vegas hacker conferences, shown up in random TV news spots and even moderated a panel discussion at the CEDIA home-technology conference. You can follow his rants on Twitter at @snd_wagenseil.

Latest in Video Conferencing
A composite image showing Skype and Microsoft Teams side by side
I used Skype for years, and Teams is a poor replacement for the video calling service that started it all
Google Meet
Google Meet is getting a very handy automatic picture-in-picture mode — what you need to know
Project Starline 3D video conferencing
I just tried Google’s 3D video conferencing tool launching next year — here’s what Project Starline is like
Microsoft Teams
New Microsoft Teams is live — here's the 3 biggest upgrades
Google Meet update
It's official — Google Meet is getting one of Zoom’s best features
Zoom call on MacBook
Zoom flaw allows hackers to take over your Mac — update right now
Latest in News
Park Hae-soo as Kim Beom-jun in "Karma" on Netflix
Netflix’s latest crime thriller show just got a new trailer — and I can’t wait to see this ‘Squid Game’ star back in action
Michaela Kell (Julianne Moore) petting a bird in a promotional still from Netflix's "Sirens"
Netflix just teased a new dark comedy series with Julianne Moore, Kevin Bacon, and Meghann Fahy — here's your first look
Showing the front of a Galaxy S25 Ultra held in hand
One UI 7 will arrive late for US Samsung users — here’s when it’ll launch for you
a runner at the 2007 Barkley Marathons event putting his head in his hand
The Barkley Marathons strikes again — with just 20 finishers in history, can anyone survive 2025?
IKEA TJÄRLEK vase set of 3
IKEA just dropped its colorful new spring collection — 3 items I’ll be buying
Stephen Graham as Eddie Miller in "Adolescence"
Netflix top 10 shows — here's the 3 worth watching right now