Share this article

Latest news

With KB5043178 to Release Preview Channel, Microsoft advises Windows 11 users to plug in when the battery is low

Copilot in Outlook will generate personalized themes for you to customize the app

Microsoft will raise the price of its 365 Suite to include AI capabilities

Death Stranding Director’s Cut is now Xbox X|S at a huge discount

Outlook will let users create custom account icons so they can tell their accounts apart easier

Used Powershell Windows Toolbox to install the Google Play Store on Windows 11? You might have gotten malware

2 min. read

Published onApril 15, 2022

published onApril 15, 2022

Share this article

Read our disclosure page to find out how can you help Windows Report sustain the editorial teamRead more

If you had used the tool Powershell Windows Toolbox to install the Google Play Store on Windows 11 when the Windows Subsystem for Android was released, we have a huge warning for you. Spotted by thefolks at Bleeping Computer, it turns out that the third-party tool might have actually injected malware into your system.

Once hosted on Github, and since removed, the app promised to debloat Windows as well as install the Google Play Store in a few clicks. However, it turns out that it was actually a virus, that executed hidden PowerShell scrips in the background of Windows 11 and install what’s known as a trojan clicker.

That Trojan clicker then pinged various Cloudflare servers and executed its own commands to pull infected files onto your device or redirect you to scam URLs. This was all thanks to the original instructions and script to launch the tool. It, in fact, did allow the app to do the things it intended, but also created hidden folders in Windows 11 and installed unwanted Chrome extensions.

Bleeping Computerhas a great rundown of which folders in C:\systemfile you might want to delete if you were using this app. You also might want to try your luck at clean installing Windows, too, or restoring from a backup that pre-dates when you first installed the tool.

As we say every time, always be careful when you download tools that claim to change Windows. Keep your antivirus up to date, and never download programs that you don’t trust.

Radu Tyrsina

Radu Tyrsina has been a Windows fan ever since he got his first PC, a Pentium III (a monster at that time).

For most of the kids of his age, the Internet was an amazing way to play and communicate with others, but he was deeply impressed by the flow of information and how easily you can find anything on the web.

Prior to founding Windows Report, this particular curiosity about digital content enabled him to grow a number of sites that helped hundreds of millions reach faster the answer they’re looking for.

User forum

0 messages

Sort by:LatestOldestMost Votes

Comment*

Name*

Email*

Commenting as.Not you?

Save information for future comments

Comment

Δ

Radu Tyrsina