Virus and Spyware Removal Guides, uninstall instructions

HideMeFast Redirect

What is HideMeFast?

HideMeFast is rogue software, which operates as a browser hijacker. Typically, software within this classification operates by making certain modifications to browsers to promote fake search engines, however, HideMeFast behaves in a different manner. It promotes a legitimate search engine called Bing (bing.com), without first redirecting to a bogus search engine.

Additionally, HideMeFast uses the "Managed by your organization" feature in the Google Chrome browser to ensure persistence (removing becomes rather complicated).

Due to the dubious methods used to spread this software, HideMeFast is also classified as a Potentially Unwanted Application (PUA). Most PUAs monitor users' browsing activity, and this is the case with HideMeFast.

   
Incredible Tab Browser Hijacker

What is the Incredible Tab browser hijacker?

Inprobable Tab is rogue software categorized as a browser hijacker. Following successful infiltration, it modifies browser settings to promote inprobabletab.com (a fake search engine). Additionally, most browser hijackers monitor users' browsing activity and it is likely that Inprobable Tab does so as well.

Due to the dubious techniques used to promote Inprobable Tab, it is classified as a Potentially Unwanted Application (PUA).

   
Instagram Password Hack Scam

What is "Instagram password hacking tool"?

Cyber criminals attempt to trick users into installing malware on their computers in various ways. In most cases, they disguise a malicious file or program as legitimate and hope that users open/launch it. In this particular case, cyber criminals claim that there is a tool available, which is capable of hacking Instagram accounts.

Their main goal is to trick people into launching/executing an installer designed to install this tool. In fact, the installer is malicious and designed to infect operating systems with malware.

   
Zmusic-online.com Ads

What is zmusic-online[.]com?

Sharing many similarities with routemob.comrministencew.clubnews-back.best and thousands of others, zmusic-online[.]com is a rogue website that redirects visitors to other untrusted/malicious sites and/or contains dubious content.

Most users access zmusic-online[.]com (and similar pages) when they are redirected to it by intrusive ad campaigns or Potentially Unwanted Applications (PUAs) already installed on the system. These apps do not need express user permission to infiltrate devices.

PUAs operate by causing redirects, running intrusive ad campaigns and collecting browsing-related information.

   
Routemob.com Ads

What is routemob[.]com?

routemob[.]com opens dubious websites or loads unwanted content. There are are many websites similar to routemob[.]com on the internet. Some examples are rministencew[.]club, news-back[.]best and sombes[.]com. Note that users do not often visit these sites intentionally - they are opened by installed potentially unwanted applications (PUAs).

Similarly, people do not often download or install PUAs intentionally.

   
SD BIOSENSOR Email Virus

What is "SD BIOSENSOR Email Virus"?

"SD BIOSENSOR" is yet another Coronavirus/COVID-19-themed spam campaign. The term "spam campaign" is used to define a large scale operation, during which thousands of deceptive/scam emails are sent. The messages are disguised as mail from a legitimate global bio-diagnostic company (SD BIOSENSOR).

These emails are presented as important orders concerning the pandemic, however, rather than containing this information, upon opening, the attached Excel file initiates download/installation of MassLogger malware.

   
Fob Ransomware

What is Fob?

Discovered by Michael Gillespie, Fob is variant of WannaScream ransomware. Fob encrypts victims' files, modifies their filenames, creates and displays a ransom message. It renames encrypted files by adding the victim's ID and decrypt25@protonmail.com email address, and appending the ".Fob" extension to filenames.

For example, it renames a file called "1.jpg" to "1.jpg.[1E857D00[decrypt25@protonmail.com].Fob", "2.jpg" to "2.jpg.[1E857D00[decrypt25@protonmail.com].Fob", etc. It launches one a ransom message from the created "info.hta" file and creates another in a text file named "ReadMe.txt".

   
2020 MASTERCARD USERS AWARD Email Scam

What is "2020 MASTERCARD USERS AWARD"?

Typically, scammers behind phishing emails seek to trick recipients into divulging various personal information. For example, passwords (login credentials), credit card details, and/or transferring certain sums of money.

Scammers send this particular email to deceive people into believing that their email address was selected as a winner of a "2020 MASTERCARD USERS AWARD" lottery.

   
GraceWire Trojan

What is the GraceWire Trojan?

GraceWire is malicious program classified as an information-stealing Trojan (stealer). Malware within this classification targets a wide variety of data and can cause especially serious issues. GraceWire has been observed being proliferated through a malicious website, which asks users to perform a 'CAPTCHA' to verify that they are not 'robots'.

When this is done, the site downloads a dangerous Excel spreadsheet, which, upon opening, initiates the infection process of GraceWire.

   
FRAT Malware

What is FRAT?

FRAT is a Remote Access Trojan (RAT), a type of malware program that allows cyber criminals responsible to monitor and control the infected computer. Generally, users install RATs on their computers inadvertently.

The malware is used to infect computers with other software of this kind and/or steal sensitive information and files that could be misused for malicious purposes. Research shows that FRAT collects information using Node.js, Sails, and Socket.IO.

   

Page 1122 of 2126

<< Start < Prev 1121 1122 1123 1124 1125 1126 1127 1128 1129 1130 Next > End >>
About PCrisk

PCrisk is a cyber security portal, informing Internet users about the latest digital threats. Our content is provided by security experts and professional malware researchers. Read more about us.

Malware activity

Global malware activity level today:

Medium threat activity

Increased attack rate of infections detected within the last 24 hours.

Virus and malware removal

This page provides information on how to avoid infections by malware or viruses and is useful if your system suffers from common spyware and malware attacks.

Learn about malware removal