Threat Database Rogue Websites

Threat Scorecard

Ranking: 1,716
Threat Level: 20 % (Normal)
Infected Computers: 872
First Seen: May 1, 2023
Last Seen: September 29, 2023
OS(es) Affected: Windows is a rogue website that exploits the push notifications system built into web browsers to display spam pop-up advertisements on victims' devices. These websites typically employ fake error messages and other alerts to trick users into subscribing to their push notifications. When researchers observed, they were presented with a fake CAPTCHA check. The page tries to convince users to prove they are not robots by following the instructions seen on the page. The displayed message may be similar to 'Click Allow if you are not a robot.'

Once a user subscribes to the notifications, they will begin to receive spam pop-up ads. Some rogue websites can generate ads even if the user's browser is closed. These advertisements may promote a range of unwanted and potentially harmful content, including adult sites, online web games, fake software updates, and unwanted programs.

The Intrusive Notifications of Rogue Sites Like can Pose Various Risks

Intrusive notifications generated by rogue websites can pose several risks to users. One of the primary risks is that these notifications can compromise the user's device and expose them to additional security threats. By subscribing to notifications from a rogue website, the user may inadvertently grant permission for the website to send push notifications that can contain unsafe content, such as links to phishing sites or malware downloads.

Additionally, the unwanted notifications can be persistent and difficult to remove, as they continue to appear even after the users have disabled their browser or restarted their device. This can be frustrating for users and can create a sense of urgency, leading them to take actions that they might otherwise avoid, such as opening a suspicious link or downloading an unknown program.

Another risk associated with these notifications is the potential for unwanted or inappropriate content to be displayed on the user's device. Rogue websites often use notifications to promote spammy or adult content, which can be offensive or inappropriate for some users.

Furthermore, rogue notifications can affect the user's browsing experience by interrupting their workflow or causing distractions. They can also slow down the device by consuming system resources, leading to decreased performance and reduced battery life.

Overall, the risks posed by intrusive notifications generated by rogue websites are significant, and users should take precautions to avoid them. This includes being cautious when browsing the internet, avoiding suspicious websites, and disabling push notifications from unknown sources.

Look for the Signs of a Fake CAPTCHA Check

Users should be able to recognize of the typical signs of a fake CAPTCHA check when browsing the internet. One of the most standard signs is the absence of any real challenge, such as the need to identify objects or enter letters and numbers in a distorted image. Another sign is the presence of a non-standard or unusual CAPTCHA format that is different from the standard Google or reCAPTCHA formats.

Fake CAPTCHAs also may include misleading or irrelevant instructions, such as asking the user to type their name or phone number instead of solving a visual challenge. Another indication of a fake CAPTCHA is if it appears on a suspicious or untrustworthy website or if it is shown repeatedly, even after the user has correctly completed it.

Finally, fake CAPTCHAs may be designed to deceive users by mimicking the appearance of a legitimate CAPTCHA, including the use of branding or logos from reputable companies. Users should be vigilant when encountering CAPTCHAs and ensure they are legitimate before completing them, as fake CAPTCHAs may be used for phishing or other unsafe activities.

URLs may call the following URLs:


Most Viewed