Virus and Spyware Removal Guides, uninstall instructions

ProductionInteractive Adware (Mac)

What kind of application is ProductionInteractive?

After an evaluation of ProductionInteractive, it has become clear that its main purpose is to inundate users with intrusive advertisements, classifying it as adware. It is important to note that such applications are often promoted and distributed through deceptive methods, leading users to install them unknowingly.

   
Fieryforgekeeper.top Ads

What kind of page is fieryforgekeeper[.]top?

Our research team found the fieryforgekeeper[.]top rogue page while investigating dubious websites. It promotes browser notification spam and redirects users to different (likely unreliable/harmful) sites.

Users predominantly enter pages like fieryforgekeeper[.]top via redirects caused by websites that utilize rogue advertising networks.

   
Namaste Tab Browser Hijacker

What kind of software is Namaste Tab?

Namaste Tab is a browser extension that we discovered while reviewing dubious websites. Our analysis revealed that this extension is browser-hijacking software. It modifies browser settings in order to promote (via redirects) the privatesearchqry.com illegitimate search engine.

   
BudgetBuddy Browser Hijacker

What kind of software is BudgetBuddy?

Our research team found the BudgetBuddy browser extension during a routine investigation of suspicious sites. This extension is promoted as a tool that allows users to manage their monthly budget.

However, following our inspection, we determined that BudgetBuddy is a browser hijacker. It makes changes to browser settings in order to promote the uhereugo.com fake search engine.

   
WebMail Server Manager Email Virus

What kind of email is "WebMail Server Manager"?

Our examination of the "WebMail Server Manager" email revealed that it is malspam. This spam letter informs the recipient that multiple messages have failed to reach their inbox.

Supposedly, the undelivered emails can be found in the attachments. The attached files are identical, and both are designed to infect systems with the Agent Tesla RAT (Remote Access Trojan).

   
AdAssistant Adware

What kind of application is AdAssistant?

AdAssistant is an application that our researchers discovered while inspecting deceptive sites. After investigating this piece of software, we determined that it is adware. Additionally, the installation setup containing AdAssistant was bundled with the Shop and Watch, ChatGPT Check, and NXD Fix rogue browser extensions.

   
Shipping Bills & Export Declaration Form Email Virus

What is "Shipping Bills & Export Declaration Form"?

After examining this letter, we have concluded that its intent is to deceive recipients into infecting their computers. The email appears as a correspondence related to shipping bills and export declaration forms, but it includes an attachment specifically crafted to introduce Remcos RAT into the targeted computers.

   
NIGHT CROW Ransomware

What kind of malware is NIGHT CROW?

Our research team discovered the NIGHT CROW ransomware while inspecting new submissions to the VirusTotal website. This program is designed to encrypt data and demand payment for its decryption.

On our test machine, NIGHT CROW encrypted files and appended their filenames with an extension. The titles had ".NIGHT_CROW" added to them, e.g., a file initially named "1.jpg" appeared as "1.jpg.NIGHT_CROW", "2.png" as "2.png.NIGHT_CROW", etc. Afterward, a ransom note titled "NIGHT_CROW_RECOVERY.txt" was dropped.

   
BBTok Malware

What kind of malware is BBTok?

The BBTok is a banking Trojan written in Delphi equipped with specialized functionality that mimics the interfaces of over 40 Mexican and Brazilian banks. Its deceptive tactics involve luring victims into divulging their 2FA codes for bank accounts or their payment card numbers.

Additionally, BBTok boasts capabilities such as process enumeration and termination, control over keyboard and mouse functions, and manipulation of clipboard contents.

   
IRATA Malware (Android)

What kind of malware is IRATA?

IRATA is the name of an Android-specific malware. This program has spyware and stealer capabilities. It was discovered after a smishing (SMS phishing) attack in Iran. This campaign entailed legitimate-looking SMSes containing a link to a fake governmental website. The page urged visitors to download an app and pay a fee for the service.

It is noteworthy that IRATA has the ability to create a botnet from infected devices and use it to self-proliferate via spam text messages.

   

Page 182 of 2130

<< Start < Prev 181 182 183 184 185 186 187 188 189 190 Next > End >>
About PCrisk

PCrisk is a cyber security portal, informing Internet users about the latest digital threats. Our content is provided by security experts and professional malware researchers. Read more about us.

Malware activity

Global malware activity level today:

Medium threat activity

Increased attack rate of infections detected within the last 24 hours.

Virus and malware removal

This page provides information on how to avoid infections by malware or viruses and is useful if your system suffers from common spyware and malware attacks.

Learn about malware removal