Cybersecurity research firm Bitdefender has revealed how cybercriminals are using fake Facebook ads to promote malware versions of popular artificial intelligence tools, including Sora, DALL-E, ChatGPT 5 and OpenAI, according to an article in the Indian Express. These malicious Facebook ads are designed to trick unsuspecting users into downloading malware, leading to the theft of sensitive information.
See also: AZORult malware spreads via fake Google websites

According to the report, hackers are hijacking existing pages of popular Facebook AI tools, such as Midjourney, to mimic their AI services, making false claims of “limited-time access” to new features and offers. The malicious Facebook ads then direct users to join the corresponding Facebook communities, where they are asked to download malware-ridden “desktop versions” of the AI tools.
However, these downloads are Windows executables packed with viruses like Rilide, Nova, Vidar, and IceRAT, which are known for their ability to steal sensitive data , including stored credentials, cryptocurrency wallet information, and credit card details. This user data is then sold on the Dark Web or sometimes used by the hackers to commit financial crimes.
See also: “TicTacToe Droppers” are used to distribute malware
The extent of cybercrime and malware distribution doesn’t stop at creating fake Facebook ads and hacking Facebook pages. It has expanded to creating multiple websites to avoid using Dropbox and Google Drive, making the downloads appear legitimate, The Hindu reports. The hackers who used Facebook communities to ask people to download AI tools are also promoting NFTs and monetizing their creations. They use a GoFile link to carry out these scams via a fake Midjourney landing page.

The report further highlighted that the targets of these scams were Facebook users in Sweden, Romania, Belgium, Germany, Italy, France, Poland, Spain, the Netherlands, and others. By tracking the Meta Ad Library catalog, it was discovered that Midjourney’s fake Facebook ads reached 500,000 people, initially targeting male users from Europe aged 25-55.
See also: TheMoon malware infected 6,000 ASUS routers
What are the basic tools and techniques for malware protection?
One of the most essential tools for protecting against malware, such as that distributed by fake Facebook ads, is a reliable antivirus program. This should be able to detect and remove a wide range of threats, including viruses, Trojans, spyware , and other forms of malware. The second tool to consider is a firewall. A firewall acts as a kind of barrier between your computer and the internet, blocking access from unwanted sources. Additionally, using a web browser with built-in security features can help protect against malware. Finally, using encryption tools can provide an extra layer of protection by encrypting your data to make it unintelligible in the event of a breach.
Source: medianama
🔒 Protect your privacy with Proton VPN
Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.
- ✔ No-logs, based in Switzerland (except 14-Eyes)
- ✔ NetShield: blocks ads, trackers & malicious domains
- ✔ Covers all devices — free version available
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
