By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: Fake Meta suspension warnings used in new malware campaign — how to protect your devices and your data
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > News > Fake Meta suspension warnings used in new malware campaign — how to protect your devices and your data
News

Fake Meta suspension warnings used in new malware campaign — how to protect your devices and your data

News Room
Last updated: 2025/09/16 at 4:07 PM
News Room Published 16 September 2025
Share
SHARE

A new FileFix attack is using novel lures in order to trick users into downloading malware. As reported byBleeping Computer, this latest version of the increasingly popular social engineering attack was first discovered by Acronis, who noticed that hackers have been using the FileFix technique and sending out fake Meta account suspensions in order to convince users to unknowingly download the StealC infostealer.

StealC can exfiltrate usernames and passwords from a wide variety of platforms including credentials stored in the cloud, credentials and authentication cookies from web browsers, credentials from messaging apps, cryptocurrency wallets, VPNs and gaming apps, and it can take screenshots of your desktop too. This new FileFix attack is tricking users by sending fake warning messages that appear to come from Meta’s support team. There’s even a multi-language fake webpage users are directed to after being warned that their account is about to be suspended or disabled.

Using typical phishing urgency with a deadline of seven days, it tells targets that in order to avoid account suspension they must view an “incident report” that Meta is sharing with them. The fake incident report is a disguised PowerShell command that downloads the StealC malware onto their system though.


You may like

Users are asked to click a button that says “Copy” which resembles a file path, and are instructed to open File Explorer to paste the copied file path into the address bar which they’re told will open the “incident report.” However, the fake path contains multiple spaces at the end making it easy to miss the malicious code and it’s also missing the usual # symbols that identify a ClickFix attack.

FileFix is a variant of the ClickFix family, which uses social engineering-style attacks to trick users into pasting malicious commands into operating system dialog boxes so they can ‘fix’ the problems that hackers claim they have. FileFix was created by mr.fox, a researcher, and uses the address bar in Windows’ File Explorer to execute malicious commands instead of the Windows Run dialog box which is what ClickFix uses.

How to stay safe

(Image credit: Shutterstock)

In its report, Acronis recommends that companies educate their users on these new tactics and the risks of copying data from a website into seemingly harmless system dialog. However, as this is a phishing attack what is most important is recognizing many of the same signs found in other phishing and social engineering campaigns.

As with any phishing campaign, If you receive a suspicious email about one of your online accounts, do not click on anything within it. Instead, simply go directly to the URL or web address of that account in your browser to see if there are messages for your there. Additionally, make sure that you enable two-factor authentication (2FA) to add an extra layer of security for your online accounts to prevent scammers from accessing them if they do manage to steal your username and password.

Get instant access to breaking news, the hottest reviews, great deals and helpful tips.

Finally, you want to protect your devices and your data from the latest cyber threats by making sure you have one of the best antivirus software solutions installed and up-to-date. You also want to make sure that you’re familiar with all of its extra features that can help you stay safe online like a VPN or a hardened browser.

Both FileFix and ClickFix attacks seem to be all the rage with hackers these days and unfortunately, this will likely continue until more people become aware of how they work. This is why I implore you to share your knowledge with others so that less people fall for these types of attacks. However, before doing so, make sure you’re practicing good cyber hygiene and have taken the necessary steps to secure your data and devices first.

Follow Tom’s Guide on Google News and add us as a preferred source to get our up-to-date news, analysis, and reviews in your feeds. Make sure to click the Follow button!

More from Tom’s Guide

Arrow

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article Quid Miner Reports Rising Interest from SOL and XRP Holders Amid Bull Market Momentum
Next Article Apple iPhone 16 to Be Available Under Rs 50,000 in Flipkart’s Big Billion Days Sale: Check The Deal Here
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

JD.com Founder Liu Qiangdong Says New Hotel Development Plan Coming by Year-End · TechNode
Computing
Apple made a strap, now Google has a rope to dangle your Pixel from your wrist
News
Haiku OS Addressing Slow “git status” Performance Relative To Linux
Computing
Groww, backed by Satya Nadella, set to become first Indian startup to go public after U.S.-to-India move | News
News

You Might also Like

News

Apple made a strap, now Google has a rope to dangle your Pixel from your wrist

2 Min Read
News

Groww, backed by Satya Nadella, set to become first Indian startup to go public after U.S.-to-India move | News

4 Min Read
News

Sen. Tammy Duckworth heads to Taiwan, Singapore in bid to ‘close the deal’ for quantum campus

4 Min Read
News

The Absolute Best Horror Movies on Hulu

1 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?