Step-by-Step Malware Removal Instructions

Trojanized Teramind Software
Trojan

Trojanized Teramind Software

This article describes how cybercriminals abuse a legitimate remote administration tool called Teramind for malicious purposes. Remote access tools allow users to control or access a device from another location over the internet. When used by cybercriminals, they can secretly access a victim's de

Zap PDF Unwanted Application
Potentially unwanted application

Zap PDF Unwanted Application

We have examined the Zap PDF application and found that it is advertised as a tool for converting files. However, the app is flagged as malicious by multiple security vendors and can make adjustments in browser settings (it can hijack a browser). Installing Zap PDF can result in privacy and securi

Quarantine Report For Your Zoho Account Email Scam
Phishing/Scam

Quarantine Report For Your Zoho Account Email Scam

We have inspected the email and concluded that scammers behind it seek to trick recipients into believing that it is a quarantine report from the email service provider. The email contains a link to a fake website designed to steal personal information. Victims of this scam may lose access to thei

Locate.oculabase.com Redirect
Browser Hijacker

Locate.oculabase.com Redirect

Upon testing locate.oculabase.com, we found that it is a fake search engine promoted through an extension designed to hijack web browsers. This fake search engine does not generate results. Instead, it redirects users to other sites that may include fraudulent pages. The extension promoting locate

One Time Password Authentication Email Scam
Phishing/Scam

One Time Password Authentication Email Scam

We have inspected the email and concluded that it is a phishing message posing as an authentication notice from the email provider. Its goal is to lure recipients into sharing personal data on a fraudulent website. Victims of this scam may encounter issues such as account hijacking and additional

LSD Ransomware
Ransomware

LSD Ransomware

LSD is ransomware designed to encrypt files. In addition to blocking access to files, it appends the ".lsd" extension to files and generates a ransom note ("LSD_README.txt"). For example, it renames "1.jpg" to "1.jpg.lsd", "2.png" to "2.png.lsd", and so forth. LSD also displays a full-screen ranso

SURXRAT Malware (Android)
Trojan

SURXRAT Malware (Android)

SURXRAT is a remote access Trojan (RAT) that is sold as a malware-as-a-service (MaaS) via a Telegram-based platform. Analysis of its source code and features suggests that SURXRAT likely originated from Arsink RAT. The malware targets Android devices, can steal sensitive information, and can block

Splumatorwrin.com Ads
Notification Spam

Splumatorwrin.com Ads

We have examined splumatorwrin[.]com and found that it uses clickbait to trick visitors into allowing it to send notifications. Those notifications can contain deceptive content and lead users to untrustworthy and potentially malicious sites. Users should be careful when encountering sites like sp

Login Notice: Review Immediately Email Virus
Phishing/Scam

Login Notice: Review Immediately Email Virus

Our team has inspected the message and found that it is used to distribute a tool allowing scammers to access infiltrated devices remotely. The email is crafted to appear urgent to trick recipients into following the provided instructions. Falling for it can lead to various issues, including finan

Beringlousnet.com Ads
Notification Spam

Beringlousnet.com Ads

We have inspected beringlousnet[.]com and determined that it is designed to deceive visitors into allowing notifications. The site relies on clickbait tactics to gain permission to send these notifications. Once allowed, pages like beringlousnet[.]com typically flood users with intrusive ads, fake