Step-by-Step Malware Removal Instructions

Uncythathfal.com Ads
Notification Spam

Uncythathfal.com Ads

Our analysis has revealed that uncythathfal[.]com is a rogue webpage designed to trick visitors into enabling browser notifications. It uses a fake robot verification message as bait, instructing users to click 'Allow' to prove they are not a robot. If granted permission, uncythathfal[.]com can se

Juntautororia.com Ads
Notification Spam

Juntautororia.com Ads

Our research team found the juntautororia[.]com rogue page while investigating suspicious websites. After inspecting this webpage, we learned that it promotes browser notification spam and redirects visitors to other (likely unreliable/harmful) sites. Juntautororia[.]com displays a message

Cgre-defender.pro Ads
Notification Spam

Cgre-defender.pro Ads

Our research team discovered cgre-defender[.]pro while investigating dubious websites. The page uses a fake CAPTCHA to trick visitors into agreeing to receive browser notifications. Once permission is granted, cgre-defender[.]pro delivers fake security alerts that can expose users to online threat

Woonceome.com Ads
Notification Spam

Woonceome.com Ads

Our research team found the woonceome[.]com rogue page while investigating suspicious websites. After inspecting this webpage, we determined that it uses a fake human verification prompt to trick visitors into enabling browser notifications. If permitted, woonceome[.]com sends misleading security

Night Dragon RAT (Android)
Trojan

Night Dragon RAT (Android)

Night Dragon RAT is a Remote Access Trojan targeting Android users. It was unveiled through a criminal Telegram channel on June 23, 2026, as a successor to an earlier Android malware framework known as Flying Eagle. According to research published by hunt.io, Night Dragon can steal financial crede

Flying Eagle RAT (Android)
Trojan

Flying Eagle RAT (Android)

Flying Eagle RAT is an Android remote access trojan distributed as a source-code framework through criminal Telegram channels. It can capture keystrokes and payment credentials, record the device screen, access the camera, and deploy phishing overlays targeting financial and government application

TONResolver RAT
Trojan

TONResolver RAT

TONResolver is a Remote Access Trojan (RAT) written in JavaScript and run through the legitimate Node.js runtime. Once active, it opens a persistent encrypted connection to an attacker-controlled server and waits for instructions, giving operators the ability to execute code, retrieve files, and d

QuimaRAT Malware
Trojan

QuimaRAT Malware

QuimaRAT is a Java-based Remote Access Trojan (RAT) sold to cybercriminals as a subscription service. This model, known as Malware-as-a-Service (MaaS), allows anyone who pays the fee to deploy the RAT against targets of their choosing. According to research published by LevelBlue's SpiderLabs tea

KansasGroup Ransomware
Ransomware

KansasGroup Ransomware

KansasGroup is ransomware our research team identified while analyzing new file submissions on VirusTotal. Like most ransomware, it encrypts files on the infected machine and demands payment in exchange for decryption. On our test machine, this ransomware appended the ".kansas4life" extension to

Own Ransomware
Ransomware

Own Ransomware

Own Ransomware is a ransomware-type program discovered by our researchers during a routine inspection of new submissions to the VirusTotal website. It encrypts files on the infected device and demands payment in exchange for decryption. On our test machine, Own Ransomware appended each filename w