Skip to main content

Over 900,000 users hit in a year by fake video games spreading malware

June 13, 2019

Cybercriminals are taking advantage of growing demand for video games by distributing malware through fake copies of the most popular ones, research by Kaspersky has found.

More than 930,000 users were hit by such attacks in the 12 months from early June 2018 to early June 2019. Over a third of the attacks centered on just three games.

Video gaming has been around for a while, but the power of the internet has accelerated its growth and evolution. Today around one in ten of the world’s population plays online games. Like other types of digital entertainment, video games are vulnerable to abuse such as copyright infringement and illegal torrent-trackers, but they face another growing threat: the fraudulent use of their brand to disguise the distribution of malware. Many of the top video games are hosted on digital distribution platforms. These cannot always detect whether the software files uploaded are legitimate gaming files or disguised malware samples.

Kaspersky researchers decided to take a closer look at the infected files detected during 2018 and the first part of 2019. Leading the list of abused games was ‘Minecraft’. Malware disguised as this game accounted for around 30% of attacks, with over 310,000 users hit. In second place was ‘GTA 5’, targeting more than 112,000 users. ‘Sims 4’ took fourth place with almost 105,000 users hit.

According to the researchers, criminals were also found trying to lure users into downloading malicious files pretending to be unreleased games. Spoofs of at least 10 pre-release games were seen, with 80% of detections focused on FIFA 20, Borderlands 3, and the Elder Scrolls 6.

“For months now we see that criminals are exploiting entertainment to catch users by surprise – be it series of popular TV shows, premieres of top movies or popular video games. This is easy to explain – people can be less vigilant when they just want to relax and have fun. If they’re not expecting to find malware in something fun they’ve used for years, it won’t take an advanced-threat like infection vector to succeed. We urge everyone to stay alert, avoid untrusted digital platforms and suspicious looking offers, install security software and perform a regular security scan of all devices used for gaming,” said Maria Fedorova, security researcher at Kaspersky.

To avoid falling victim to malicious programs pretending to be video games, Kaspersky Lab recommends taking the following steps:

  • Use only legitimate services with a proven reputation.

  • Pay extra attention to the websites’ authenticity. Do not visit websites allowing downloading video games until you are sure that they are legitimate and start with ‘https’. Confirm that the website is genuine by double-checking the format of the URL or the spelling of the company name, before starting downloads.

  • Don’t click on suspicious links, such as those promising a chance to play a pre-release game.

  • Use reliable security solution for comprehensive protection from a wide range of threats, such as Kaspersky Security Cloud.

Read the full text of the report on the content hub.

About Kaspersky

Kaspersky is a global cybersecurity company founded in 1997. Kaspersky’s deep threat intelligence and security expertise is constantly transforming into innovative security solutions and services to protect businesses, critical infrastructure, governments and consumers around the globe. The company’s comprehensive security portfolio includes leading endpoint protection and a number of specialized security solutions and services to fight sophisticated and evolving digital threats. Over 400 million users are protected by Kaspersky technologies and we help 270,000 corporate clients protect what matters most to them. Learn more at www.kaspersky.com.

Over 900,000 users hit in a year by fake video games spreading malware

Cybercriminals are taking advantage of growing demand for video games by distributing malware through fake copies of the most popular ones, research by Kaspersky has found.
Kaspersky logo

About Kaspersky

Kaspersky is a global cybersecurity and digital privacy company founded in 1997. With over a billion devices protected to date from emerging cyberthreats and targeted attacks, Kaspersky’s deep threat intelligence and security expertise is constantly transforming into innovative solutions and services to protect businesses, critical infrastructure, governments and consumers around the globe. The company’s comprehensive security portfolio includes leading endpoint protection, specialized security products and services, as well as Cyber Immune solutions to fight sophisticated and evolving digital threats. We help over 200,000 corporate clients protect what matters most to them. Learn more at www.kaspersky.com.

Related Articles Press Releases

Anti-Ransomware Day was established on May 12 in 2020 by INTERPOL in collaboration with Kaspersky to commemorate the anniversary of the infamous WannaCry ransomware attack that occurred on May 12, 2017. The purpose of Anti-Ransomware Day is to raise...
Read More 
Among the primary risks are inadequate security measures and insufficient resources allocated to OT cybersecurity, challenges surrounding regulatory compliance, and the complexities of IT/OT integration. These findings Kaspersky and VDC Research...
Read More 
Kaspersky’s GReAT team has uncovered a sophisticated new Lazarus campaign, combining a watering hole attack with the exploitation of vulnerabilities in third-party software to target organizations in South Korea. During the research, company experts...
Read More 

We use cookies to make your experience of our websites better. By using and further navigating this website you accept this. Detailed information about the use of cookies on this website is available by clicking on more information.