Step-by-Step Malware Removal Instructions

Donation By Foundation Email Scam
Phishing/Scam

Donation By Foundation Email Scam

We have examined this email and determined it to be a scam. The message falsely claims the recipient has been selected to receive a large charitable donation from a famous person's foundation. It is a classic advance-fee fraud designed to extract money and personal information from unsuspecting re

Your Corporate Password Has Expired Email Scam
Phishing/Scam

Your Corporate Password Has Expired Email Scam

We have examined this email and determined it is a phishing scam. Disguised as a security notice from corporate IT, the message falsely claims the recipient's password has expired and urges them to click a "Review" link. That link leads to a fake login page designed to steal email credentials. Thi

QUIC RAT
Trojan

QUIC RAT

QUIC RAT is a Remote Access Trojan (RAT) that lets attackers secretly control infected Windows computers. Kaspersky researchers documented its use during a supply chain attack on Daemon Tools, a widely used Windows disc-imaging utility, in which trojanized installers signed with valid certificates

CallPhantom Scam (Android)
Other

CallPhantom Scam (Android)

CallPhantom is a cluster of fraudulent Android applications distributed through the official Google Play Store. These apps falsely promised to retrieve call logs, SMS records, and WhatsApp history for any phone number. According to ESET researchers, the 28 apps in this campaign amassed over 7.3 mi

Vendor Evaluation Email Scam
Phishing/Scam

Vendor Evaluation Email Scam

After inspecting this email, we determined that it is a phishing scam. The message is disguised as a business invitation to review a Request for Quotation (RFQ), but its real purpose is to send recipients to a fake email login page that steals account credentials. The email should be ignored to av

Search.capredirectapp.com Redirect
Browser Hijacker

Search.capredirectapp.com Redirect

Our researchers investigated Search Control for Chrome and found it to be a browser hijacker. This extension changes the browser's default search engine to search.capredirectapp.com - a fake search engine that cannot generate its own results. Users who have Search Control for Chrome installed are

Jupiter Allocation Scam
Phishing/Scam

Jupiter Allocation Scam

During an investigation of dubious websites, our researchers discovered jupag[.]pro - a page built to mimic the legitimate Jupiter platform. The site falsely claims that visitors have frozen JUP token allocations waiting to be claimed. In reality, it is a cryptocurrency drainer designed to steal d

PhantomCard/NFCShare Banking Trojan (Android)
Other

PhantomCard/NFCShare Banking Trojan (Android)

PhantomCard and NFCShare are two researcher-given names for the same Android banking trojan, which uses NFC relay attacks to steal contactless payment card data and PINs. ThreatFabric named the Brazil-targeting build PhantomCard; D3Lab named the Italy-targeting build NFCShare. Both are regional va

NANOREMOTE Backdoor
Trojan

NANOREMOTE Backdoor

NANOREMOTE is a backdoor - a type of malware that opens a hidden channel on an infected computer so that attackers can issue commands and deliver additional payloads at any time. According to research by Elastic Security Labs, NANOREMOTE is part of the REF7707 threat campaign and is closely relate

Facebook Casino Online Promotions Email Scam
Phishing/Scam

Facebook Casino Online Promotions Email Scam

We have examined this email and concluded that it is an advance-fee scam. The message falsely claims the recipient has won one million dollars through a fictional prize program called "Facebook Casino Online Promotions." There is no prize. Recipients who engage will eventually be pressured into pa