This malware was first identified in 2021 by security firm Sophos and exploits niche Google searches to infect a user’s computer. The malware distributes malicious code, such as ransomware, to encrypt files and only release them upon the payment of a ransom.
Legitimate businesses have their websites hacked and unwitting users are directed to these infected websites following an adversaries exploitation of Search Engine Optimisation (SEO) that answers a very specific question.
You should also set you anti-virus to block the below SHA256 hashes. This is the hashed version of the malicious file; blocking this will not immediately quarantine this file.