Step-by-Step Malware Removal Instructions

Calipso Ransomware
Ransomware

Calipso Ransomware

Calipso is ransomware that our researchers found while examining new malware samples submitted to the VirusTotal platform. It encrypts files, appends the ".calipso" extension to their names, changes the desktop wallpaper, and leaves a ransom note in a text file titled "recovery.txt". On our test

EniFrost Ransomware
Ransomware

EniFrost Ransomware

EniFrost is ransomware that our researchers discovered while examining malware samples submitted to VirusTotal. It encrypts victims' files using AES-256 encryption and demands a ransom payment in exchange for the decryption key. Unlike most ransomware, EniFrost does not append any extension to en

Zynex Ransomware
Ransomware

Zynex Ransomware

Zynex is ransomware our research team identified while analyzing new file submissions on VirusTotal. It encrypts files, appends the .zynx extension to their names, and leaves a ransom note in a text file called readme.txt. The attackers also claim to exfiltrate data prior to encryption, threatenin

Flyware Ransomware
Ransomware

Flyware Ransomware

Flyware is ransomware discovered by our researchers during a routine inspection of new submissions to the VirusTotal website. Like most ransomware, it encrypts files on the infected machine and demands payment in exchange for a decryption key. On our test machine, this ransomware encrypted files

MAIN Ransomware
Ransomware

MAIN Ransomware

MAIN is ransomware belonging to the Dharma ransomware family. Our team discovered it during a routine inspection of new submissions to VirusTotal. It encrypts files, appends a complex extension to their filenames, and drops two ransom notes - a pop-up window and a text file named INFO.txt. On our

cPanel Policy Update Email Scam
Phishing/Scam

cPanel Policy Update Email Scam

We have inspected this email and found that it is a phishing scam. The message is designed to look like an official notice from cPanel, falsely claiming that account holders must verify their accounts due to a policy update. The scammers behind it want to steal hosting and email login credentials.

Vendor Registration And Partnership Process Email Scam
Phishing/Scam

Vendor Registration And Partnership Process Email Scam

We have examined this email and determined it is a scam. It is disguised as a vendor onboarding invitation from ExxonMobil Corporation, targeting businesses and professionals worldwide. The goal is to draw recipients into extended correspondence that eventually leads to requests for money, sensiti

Files Shared Using Google Drive Workspace Email Scam
Phishing/Scam

Files Shared Using Google Drive Workspace Email Scam

We have examined this email and found it to be a phishing scam. The message impersonates a Google Drive file-sharing notification, falsely claiming that a client has shared documents with the recipient's team. It carries an HTML file attachment that, when opened in a browser, displays a fake login

Pending Messages Awaiting Transfer Email Scam
Phishing/Scam

Pending Messages Awaiting Transfer Email Scam

We have inspected this email and determined it is a phishing scam. The message impersonates a generic email service notification, falsely claiming the recipient has pending messages that cannot be delivered until they take action. Its purpose is to trick recipients into clicking a link that leads

BambooToken Malware
Trojan

BambooToken Malware

BambooToken is a backdoor-type malware that gives attackers covert, remote access to infected Windows and Linux systems. It was uncovered by Black Lotus Labs, the threat research division at Lumen, and has likely been active since at least February 2023. The malware is used in targeted attacks, m