Step-by-Step Malware Removal Instructions

PetyaX Ransomware
Ransomware

PetyaX Ransomware

PetyaX is a ransomware designed to encrypt data and demand payment for the decryption. This malware renames the files that it alters. Original filenames are appended with a ".petyax" extension, e.g., a file initially titled "1.jpg" becomes "1.jpg.petyax", "2.png" – "2.png.petyax", etc. Afterward,

Heizer Kroop Sortic Unwanted Application
Potentially unwanted application

Heizer Kroop Sortic Unwanted Application

We have inspected the Heizer Kroop Sortic application and found that it contains malicious components, such as Legion Loader. The app itself has no clear purpose and is distributed using shady methods. For these reasons, users should avoid installing Heizer Kroop Sortic and uninstall it from compu

Fripolonishnity.co.in Ads
Notification Spam

Fripolonishnity.co.in Ads

While investigating suspicious sites, our researchers discovered fripolonishnity.co[.]in – it is a rogue page that promotes browser notification spam and redirects users to other (likely untrustworthy/hazardous) websites. Most visitors to fripolonishnity.co[.]in and similar webpages access them th

Fake DeXe Protocol Website Scam
Phishing/Scam

Fake DeXe Protocol Website Scam

We have inspected the website (claim.dexenetwork[.]click) and discovered that it mimics the original DeXe Protocol site (dexe.network). The fake web page is designed to trick individuals into taking steps that could lead to cryptocurrency theft. It should not be trusted and should be closed if eve

TD Bank Email Scam
Phishing/Scam

TD Bank Email Scam

After examining this "TD Bank" email, we determined that it is fake. This spam letter urges the recipient to update their TD Bank account details. The purpose of this scam mail is to deceive users into disclosing their log-in credentials to a phishing website. It must be emphasized that this email

GIFTEDCROOK Stealer
Trojan

GIFTEDCROOK Stealer

GIFTEDCROOK is an information stealer written in C/C++ programming language. Cybercriminals spread it through deceptive emails that include a macro-enabled Microsoft Excel spreadsheet (XLSM). GIFTEDCROOK is used to pilfer information from web browsers. Victims should remove the malware as soon as

Fake SwapBased Website Scam
Phishing/Scam

Fake SwapBased Website Scam

While browsing suspicious sites, our researchers discovered a fake SwapBased webpage. The scam website's appearance and domain is incredibly close to that of the official site. This fraudulent page promotes a crypto drainer – thus victims of this scam have the cryptocurrency drained from their dig

Tesla Foundation Giveaway Scam
Phishing/Scam

Tesla Foundation Giveaway Scam

Our analysis of the website has shown that this is a scam posing as a giveaway held by the Tesla Foundation. Scammers promote it using fake X (formerly Twitter) accounts. Their goal is to trick unsuspecting individuals into taking actions that would lead to the theft of their cryptocurrency.

Email Service Enhancement Scam
Phishing/Scam

Email Service Enhancement Scam

We have inspected the email and concluded that it is a fake from "IT Software Operator" regarding the activation of upgraded mailbox storage. The scammers behind this fraudulent email aim to extract personal information from recipients through a deceptive page. Such emails are classified as phishi

VShell Malware (Mac)
Mac Virus

VShell Malware (Mac)

VShell is a piece of malicious software with backdoor, RAT (Remote Access Trojan), and injector abilities. This program can cause chain infections and execute commands on infected machines. VShell is highly compatible, as it can infiltrate payloads for Mac (macOS), Windows, and Linux operating s