I think they should have used an malicious looking URL instead to get to the website
https://pc-helper.xyz/root-exploit/virus_loader_tool.exe?id=...