Threat Database Rogue Websites

Threat Scorecard

Ranking: 2,592
Threat Level: 20 % (Normal)
Infected Computers: 193
First Seen: July 19, 2023
Last Seen: September 30, 2023
OS(es) Affected: Windows

Infosec experts are warning users about the untrustworthy rogue page This particular Web page is intentionally designed to engage in promoting intrusive and unwanted browser notifications. In addition, rogue pages of this type often also redirect visitors to other questionable destinations.

Visitors typically encounter and similar pages through redirects initiated by websites that utilize rogue advertising networks. These networks employ deceptive tactics to redirect users without their consent.

Any Content Shown by Should be Approached with Caution

The behavior of rogue Web pages can vary based on the IP address or geolocation of each visitor. This means that the content encountered on these sites may be tailored or influenced by this information.

During the analysis of, researchers encountered a deceptive practice involving a fabricated CAPTCHA verification test. Specifically, the webpage presents visitors with an image featuring several robots. The image is accompanied by instructions to click on the 'Allow' button as a way for users to prove that they are not robots.

If a visitor falls for this trick, they unintentionally grant permission to to deliver browser notifications. These notifications often consist of advertisements that promote online scams, untrustworthy or hazardous software, and potentially even malware.

In summary, websites such as can expose users to various risks, including system infections, serious privacy concerns, financial losses, and potential identity theft. It is crucial for users to remain vigilant and take pertinent security measures to protect themselves from these threats.

Look for the Typical Signs of a Fake CAPTCHA Check

Recognizing a fake CAPTCHA check from a legitimate one can be challenging, as attackers continuously refine their deceptive techniques. However, there are several signs that users can look out for to help identify a fake CAPTCHA check:

  • Visual inconsistencies: Fake CAPTCHA checks may exhibit visual inconsistencies, such as distorted or poorly rendered images, mismatched fonts, or pixelated graphics. Legitimate CAPTCHAs typically have a consistent and professional appearance.
  •  Unusual or irrelevant instructions: Pay attention to the instructions provided alongside the CAPTCHA. Suppose the instructions seem confusing, nonsensical, or unrelated to typical CAPTCHA practices (e.g., asking to click 'Allow' or perform unrelated tasks). In that case, it may be a red flag of a fake CAPTCHA.
  •  Lack of variety: Genuine CAPTCHAs typically offer a variety of challenges to verify human users, such as selecting images that match a certain criterion or solving simple mathematical equations. If the CAPTCHA consistently presents the same type of challenge or lacks diversity, it could indicate a fake.
  •  Placement and timing: Legitimate CAPTCHAs are typically placed in logical positions within a website's user flow, such as during account creation or login processes. If a CAPTCHA unexpectedly appears on unrelated pages or at unusual times, it could be a sign of a fake CAPTCHA.
  •  Requesting unnecessary permissions: Be cautious if the CAPTCHA prompts you to grant unnecessary permissions, such as allowing browser notifications or accessing device information. CAPTCHAs solely serve the purpose of verifying human users and should not require extensive permissions.
  •  Trustworthy domain: Verify the legitimacy of the website displaying the CAPTCHA. Check the website's domain name, look for security indicators (e.g., SSL certificate), and consider the reputation of the website. Fake CAPTCHAs are more likely to be encountered on suspicious or malicious websites.

While these signs can help users identify potential fake CAPTCHA checks, it is essential to remain vigilant and exercise caution when interacting with CAPTCHAs or any other online content. When uncertain, it is advisable to err on the side of caution and avoid engaging with suspicious or untrustworthy CAPTCHAs.

URLs may call the following URLs:


Most Viewed