Blog.Malwarebytes
Malware Disguised as WinRAR Installer Found on Chinese Websites
First seen 8 Jan 2026, 22:53 UTC
•

•30.6
Export
Article Content
Browse articles
A fake WinRAR installer has been identified that contains the Winzipper malware. This malware is being distributed through various Chinese websites, posing a risk to users who download the compromised installer. The Malwarebytes Labs team has reported this issue, highlighting the need for caution when downloading software from unofficial sources.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
Gamaredon Exploits WinRAR Vulnerability in Ongoing Ukraine Campaign
Exploitation of WinRAR CVE-2025-8088 Threatens Ukrainian Organizations
Critical SSTI Vulnerability in FOSSBilling Exposes Databases to RCE Attacks
MuddyWater Targets U.S. Entities Amid Geopolitical Tensions
UAC-0099 Exploits Notepad++ to Distribute Malware in Ukraine
State Actors Target Water Systems Amid Weak Cyber Defenses