The ‘MovieReaper’ malware has infected hundreds of users, according to antivirus provider Kaspersky, which traced the attack to iTorrents.org, a site that appears to be compromised.
If you run an exe expecting it to be a movie you kind of deserve it.
windows hides file extensions by default.
DOS making file extensions a fundamental part of their filesystem just to hide them by default in windows is some good irony.
I still don’t get why this is the default, and why people don’t change it when they install. It’s been a detriment of the OS since day one, and changing that one thing alone probably could have saved so many people over the decades.
So unhide them? It will still say Application under type. I’m not going to defend Microsoft doing that but it’s not like it’s a new thing or it’s hard to fix.

Sure, but this isn’t geochemistry it’s the most popular desktop OS in the world that the person in this scenario ostensibly owns and uses. In addition, they’re using it for the famously risky practice of piracy so you’d expect a modicum of caution.
You’ve never ever played tech support for a relative. I can tell.
I absolutely have, and if they infected themselves with The.Odyssey.2026.1080p.AMZN.WEBDL.H265.exe I would absolutely make fun of them.
Thats not very nice of you
I’ve gotten infections from payloads hidden in MP4 metadata before. It doesn’t have to be an exe.
It would be a kinder world if ignorance wasn’t exploited / punished.
But, yeah. It’s not like malware in movies was the first time that ignorance would be very much the opposite of bliss. Plenty of berries that will give you a bad time if you ignorantly eat them; and some plants (and animals) even use mimicry take advantage of the lack of observation or knowledge.
“deserve” might not be the way I’d put it, but you execute enough movies and bad things will happen to you.
if the site is compromised, the hackers wouldn’t need to use .exe
just visiting the site would be enough to get infected, potentially
or even clicking on an itorrents link from 1337x, cuz the latter doesn’t host their own torrent files
That kind of browser exploit isn’t cheap and this is not the way that it is likely to get used.
fair enough.
although the apparent goal of a hack can also be an obfuscation of the true goal which may be more worthy of expense.
whatever though. i accept the community feels I’m overreacting.
fwiw I’ve always avoided .exe in torrents. maybe why i thought that was a basic b level safety warning.
Avoiding executables from untrusted sources is pretty reasonable.
Well if visiting a (compromised) site can get you infected the problem is not the site, but your browser, right?
i know that’s a figurative way of emphasizing things in a certain way. but it’s better to acknowledge that both things are problems.
Sure except they did use a .exe. The article states the expected .torrent was being replaced with a .torrent that downloads an 865 MB .exe file.





