Researchers found attackers using fake CAPTCHA pages. Users should never run PowerShell or Windows commands requested by ...