Paradox Issues Warning: Popular Cities: Skylines II Mod Allegedly Spreading Malware

Paradox Issues Warning: Popular Cities: Skylines II Mod Allegedly Spreading Malware

Important Security Alert for Cities: Skylines II Players

Players of Cities: Skylines II who have been utilizing mods should proceed with caution, as a recent announcement from Paradox Interactive has raised alarms about potential security risks. Reports indicate that a popular mod available on the Paradox Mods platform has been found to contain an unauthorized .dll file, which the company suspects to be malicious.

Details of the Compromised Mod

The mod in question, termed Traffic, appears to be the only custom content impacted by this concerning update. Paradox has acted swiftly, removing the compromised version of the mod from their platform. Nevertheless, any player who utilized the Traffic mod between October 28 and October 31 may have already downloaded this potentially harmful file.

Recommended Actions for Players

In light of this development, Paradox has outlined specific guidelines for players based on their involvement with the Traffic mod:

  • No previous engagement: If you have neither downloaded nor subscribed to the Traffic mod, your system should remain unaffected—no action required.
  • Using the Traffic mod but not during the risk period: If you own the Traffic mod but have not played Cities: Skylines II during the specified timeframe, allow the mod to sync normally; any malicious components should be automatically eliminated. However, conducting a scan with a trusted anti-malware program, such as Windows Defender, is still advised.
  • Active users of the compromised mod: If you played with the Traffic mod within the affected dates, it’s critical to check your local files. To locate any corrupted files, navigate to the following directory: %localappdata%low\Colossal Order\Cities Skylines II\.cache\Mods\mods_subscribed\ and specifically look for the folder 80095_13.
    • This folder 80095_13 is the only known location of the malicious files; its absence indicates that your system remains safe.
    • Should you find the folder, employ an antivirus or antimalware tool to quarantine or delete its contents, and perform a comprehensive scan of your drives.
    • As a further precaution, changing your passwords is highly recommended.

Current Status and Future Updates

In an update following this security breach, Paradox Interactive has disclosed that they are collaborating with a dedicated team of IT professionals to thoroughly investigate the malicious .dll file and evaluate its risks. The team has also completed a review of all available mods on Paradox Mods, ensuring that no additional content is compromised. Furthermore, the author of the Traffic mod has regained control over their account, with Paradox ensuring there will be no further unauthorized access to their work.

Paradox promises to keep the community informed as they progress in their investigation, assuring players that Cities: Skylines II remains safe to play and does not pose additional risks to its users.

For further details, check out the full breach announcement here.

Source & Images

Leave a Reply

Your email address will not be published. Required fields are marked *