Step-by-Step Malware Removal Instructions

Night Dragon RAT (Android)
Trojan

Night Dragon RAT (Android)

Night Dragon RAT is a Remote Access Trojan targeting Android users. It was unveiled through a criminal Telegram channel on June 23, 2026, as a successor to an earlier Android malware framework known as Flying Eagle. According to research published by hunt.io, Night Dragon can steal financial crede

Flying Eagle RAT (Android)
Trojan

Flying Eagle RAT (Android)

Flying Eagle RAT is an Android remote access trojan distributed as a source-code framework through criminal Telegram channels. It can capture keystrokes and payment credentials, record the device screen, access the camera, and deploy phishing overlays targeting financial and government application

TONResolver RAT
Trojan

TONResolver RAT

TONResolver is a Remote Access Trojan (RAT) written in JavaScript and run through the legitimate Node.js runtime. Once active, it opens a persistent encrypted connection to an attacker-controlled server and waits for instructions, giving operators the ability to execute code, retrieve files, and d

QuimaRAT Malware
Trojan

QuimaRAT Malware

QuimaRAT is a Java-based Remote Access Trojan (RAT) sold to cybercriminals as a subscription service. This model, known as Malware-as-a-Service (MaaS), allows anyone who pays the fee to deploy the RAT against targets of their choosing. According to research published by LevelBlue's SpiderLabs tea

KansasGroup Ransomware
Ransomware

KansasGroup Ransomware

KansasGroup is ransomware our research team identified while analyzing new file submissions on VirusTotal. Like most ransomware, it encrypts files on the infected machine and demands payment in exchange for decryption. On our test machine, this ransomware appended the ".kansas4life" extension to

Own Ransomware
Ransomware

Own Ransomware

Own Ransomware is a ransomware-type program discovered by our researchers during a routine inspection of new submissions to the VirusTotal website. It encrypts files on the infected device and demands payment in exchange for decryption. On our test machine, Own Ransomware appended each filename w

Proposal Evaluation Completed Email Scam
Phishing/Scam

Proposal Evaluation Completed Email Scam

After inspecting this email, we determined that it is a phishing scam. It is disguised as a management portal notification claiming that a proposal evaluation has been completed and the recipient's review is required. The link inside leads to a fake email login page designed to steal account crede

msaRAT Malware
Trojan

msaRAT Malware

msaRAT is a Remote Access Trojan (RAT) written in the Rust programming language, linked to the Chaos ransomware group. According to research published by Talos Intelligence, it uses an unusual "living off the browser" technique to keep its communications with the attacker's server hidden. Rather

CrashStealer Malware (Mac)
Mac Virus

CrashStealer Malware (Mac)

CrashStealer Malware is an information stealer targeting macOS users, discovered by Jamf Threat Labs in May 2026. It disguises itself as Apple's native crash-reporting tool to blend in with legitimate macOS processes. CrashStealer targets saved passwords, Keychain entries, browser cookies, and

Two-step Verification Was Enabled Email Scam
Phishing/Scam

Two-step Verification Was Enabled Email Scam

We have inspected this email and determined that it is a phishing scam. The message falsely claims that two-step verification was recently enabled on the recipient's account and urges them to review their security settings immediately. It leads to a fake login page designed to steal email account