June 11, 2019

What is Critical Chrome Update

Critical Chrome Update is the scam that displays fake alerts about the needed browser or system updates and this way tricks people into installing other possibly malicious programs to the computer. If you are constantly redirected and such pop-ups go to your screen repeatedly, you should be aware that this is an indication about the potentially unwanted program running on the system. Nevertheless, these pop-up messages can cause and mean more than commercial content delivery.

Critical Chrome Update Removal

Note that Critical Chrome Update virus is a malicious ad that might emerge on your screen after clicking on one of Traffic Junky ads. This ad-supported network is known to be serving promotional content on adult-only websites, and therefore visitors of these domains fell victims to KovCoreG malvertising attack that pushes Kovter.C Trojan to victims’ computer. Installation of severe malware as such can also be a result of constant alerts about alleged updates.

Critical Chrome Update scam is the social engineering attack or a campaign based on technical support scam tactics. Unfortunately, such messages and various alerts can lead to the installation of rogue tools, applications, useless programs.

However, scams like Critical Chrome Update virus, in most cases deliver messages and redirects to questionable or even malicious domains as hosts:

Chrome Update pop-ups can also provide messages with phone numbers that claim to connect victims with the technical support team. Nevertheless, these messages are fake and official technical support services are not delivering messages like this, especially are not encouraging to call questionable numbers.

You need to remove Critical Chrome Update virus instead of calling the number or contacting people behind the threat in any other way. For that, you should get an automatic anti-malware tool and clean the machine fully.

How does Critical Chrome Update works

Cybercriminals managed to compromise Traffic Junky ad network which serves ads via popular adult-oriented sites such as Pornhub. As a consequence, deceptive ads were served through common web pages and infected unsuspecting users with click-fraud malware known as Kovter Trojan.

Users who clicked on those ads were exposed to a malvertising attack that redirected them to deceptive pages that were picked based on victim’s web browser. Following the browser type and version, victims received bogus offers to install “Critical Chrome Update,” “Critical Firefox Update” or fake Adobe Flash Player update (Microsoft Edge/Internet Explorer users). The final alert is picked using a JavaScript code that is the same as one used in Neutrino and NeutrAds.

Research reveals that the attack chain starts with a redirect from advertisingmscom domain which corrupts the final link and throws the victim to a compromised malware-serving site. According to Proofpoint, this domain “inserts a call hosted behind KeyCDN,” which happens to be a giant content delivery network.

Critical Chrome Update scam suggests installing an update for the popular web browser, however, instead of updating the browser, it drops a ZIP archive that contains a runme.js file. Once executed, it addresses the server responsible for the social engineering attack. The .JS file the downloads two files to victim’s computer – .Flv and .Mp4 format file.

FLV file consists of three random digits, and the rest of them belong to an RC4 key. The MP4 record is encrypted with this key and hex-encoded. The MP4 file also stores a Powershell script that contains shellcode used to download and execute AVI file (Kovter virus).

Critical Chrome Update virus is the scam that is based on technical support scams and social engineering. Team says that the trick to avoid installing the malicious Critical Chrome Update or Urgent Chrome Update, as well as malware delivered via deceptive versions of Flash Player or other well-known programs is to never install updates from random Internet sites.

Once executed, Kovter virus establishes itself into Windows Registry rather than dropping some files on the system. This way, malicious software attempts to avoid detection. Besides, the virus sets up specific autorun entries, which runs the malware as soon as the victim starts the computer.

The malware operates silently, and the only noticeable problem is a slight decrease of computer’s performance. However, the majority of users might not suspect anything if they do not have anti-malware programs installed on their PCs. Critical Chrome Update removal also requires tools like , so the performance of your PC gets improved too.

How to delete Critical Chrome Update

Although cybercriminals use various techniques to trick victims into clicking on malicious advertisements, the method that is based on fake “updates” is actually very common and can be recognized easily. Such a technique mainly gets used to deliver more severe malware and directly infect the machine with threats.

When deceptive advertisement looks legit and includes official logos of the promoted software, it seems to be trustful and people tend to click on such content. However, you should never rely on the pop-up that claims you need to install or update anything randomly. The official software creators and providers are not showing such messages on browsers.

If you suspect that you need an update for Chrome – simply visit the official browser’s developers’ site and check whether there is an update available. However, when installing an application or direct program/ software update be aware of the additional installations. Choose Advanced or Custom options to avoid any unwanted applications.

If you were redirected to a site containing Critical Chrome Update virus, close the web page immediately. If it downloaded the malicious ZIP file to your computer automatically, do not open it and delete it as soon as possible.

However, if you launched the deceptive record, run anti-malware software as soon as you can (ideally, do it after performing a clean system boot).

To finish Critical Chrome Update removal, update your anti-malware software and scan your computer several times. It is essential to delete Kovter Trojan as soon as possible as it can perform a series of illegal activities on your computer.

You should remove Critical Chrome Update virus with tools like , Combo Cleaner, or Anti-Malware to be totally sure that all the related files, applications, and even malware get eliminated during one system check.

Stage 1: Delete Browser Extension

First of all, we would recommend that you check your browser extensions and remove any that are linked to Critical Chrome Update. A lot of adware and other unwanted programs use browser extensions in order to hijacker internet applications.

Remove Critical Chrome Update Extension from Google Chrome

  1. Launch Google Chrome.
  2. In the address bar, type: chrome://extensions/ and press Enter.
  3. Look for Critical Chrome Update or anything related to it, and once you find it, press ‘Remove’.

Uninstall Critical Chrome Update Extension from Firefox

  1. Launch Mozilla Firefox.
  2. In the address bar, type: about:addons and press Enter.
  3. From the menu on the left, choose Extensions.
  4. Look for Critical Chrome Update or anything related to it, and once you find it, press ‘Remove’.

Delete Critical Chrome Update Extension from Safari

  1. Launch Safari.
  2. Press on the Safari Settings icon, which you can find in the upper-right corner.
  3. Select Preferences from the list.
  4. Choose the Extensions tab.
  5. Look for Critical Chrome Update or anything related to it, and once you find it, press ‘Uninstall’.
  6. Additionally, open Safari Settings again and choose Downloads.
  7. If Critical Chrome Update.safariextz appears on the list, select it and press ‘Clear’.

Remove Critical Chrome Update Add-ons from Internet Explorer

  1. Launch Internet Explorer.
  2. From the menu at the top, select Tools and then press Manage add-ons.
  3. Look for Critical Chrome Update or anything related to it, and once you find it, press ‘Remove’.
  4. Reopen Internet Explorer.In the unlikely scenario that Critical Chrome Update is still on your browser, follow the additional instructions below.
  5. Press Windows Key + R, type appwiz.cpl and press Enter
  6. The Program and Features window will open where you should be able to find the Critical Chrome Update program.
  7. Select Critical Chrome Update or any other recently installed unwanted entry and press ‘Uninstall/Change’.

Alternative method to clear the browser from Critical Chrome Update

There may be cases when adware or PUPs cannot be removed by simply deleting extensions or codes. In those situations, it is necessary to reset the browser to default configuration. In you notice that even after getting rid of weird extensions the infection is still present, follow the below instructions.

Use Chrome Clean Up Tool to Delete Critical Chrome Update

  1. Launch Google Chrome.
  2. In the address box, type: chrome://settings/ and press Enter.
  3. Expand Advanced settings, which you can find by scrolling down.
  4. Scroll down until you see Reset and Cleanup.
  5. Press on Clean up computer. Then press Find.

This Google Chrome feature is supposed to clear the computer of any harmful software. If it does not detect Critical Chrome Update, go back to the Clean up computer and reset settings.

Reset Mozilla Firefox to Default

If you still find Critical Chrome Update in your Mozilla Firefox browser, you should be able to get rid of it by restoring your Firefox settings to default. While extensions and plug-ins will be deleted, this will not touch your browser history, bookmarks, saved passwords or Internet cookies.

  1. Launch Mozilla Firefox
  2. Into the address box, type: about:support and press Enter.
  3. You will be redirected to a Troubleshooting Information page.
  4. From the menu on the right side, select Refresh Firefox.
  5. Confirm your choice by clicking Refresh Firefox in the new window.
  6. Your browser will close automatically in order to successfully restore the settings.
  7. Press Finish.

Reset Safari Browser to Normal Settings

  1. Launch Safari.
  2. Press on the Safari Settings icon, which you can find in the upper-right corner.
  3. Press Reset Safari.
  4. A new window will appear. Select the boxes of what you want to reset or use the screenshot below to guide you. Once you have selected everything, press ‘Reset’.
  5. Restart Safari.

Restore Internet Explorer to Default Settings

  1. Launch Internet Explorer.
  2. From the top menu, press on Tools and then Internet Options.
  3. In the new window that opens, choose the Advanced tab.
  4. At the bottom of the window, below Reset Internet settings, there will be a ‘Reset’ button. Press that.

While extensions and plug-ins will be deleted, this will not touch your browser history, bookmarks, saved passwords or Internet cookies.

