"Huntress doesn’t know who is behind these campaigns but noted the source code of the Windows Update lure site contains comments in Russian."
You can take it to the bank that the miscreants are NOT Russian.
A fresh wave of ClickFix attacks is using fake Windows update screens to trick victims into downloading infostealer malware. ClickFix is a type of social engineering technique that tricks users into running malicious commands on their own machines, typically using fake fixes or I-am-not-a-robot prompts. These types of attacks …