Step-by-Step Malware Removal Instructions

SpiderParadise Ransomware
Ransomware

SpiderParadise Ransomware

SpiderParadise is ransomware designed to make files inaccessible by encrypting them. It provides a ransom note (a text file named "HOW_TO_RECOVER.txt") containing payment and contact information. Unlike most ransomware, SpiderParadise does not append any extension to files. Screenshot of files

Pentagon Stealer
Trojan

Pentagon Stealer

Pentagon is a malicious program written in the Go programming language. It is classified as a stealer because it is designed to extract and exfiltrate vulnerable information from compromised devices. Pentagon operates as a stealer – a type of malware that steals data from infected systems.

Update Your Webmail Account Settings Email Scam
Phishing/Scam

Update Your Webmail Account Settings Email Scam

We have inspected the email and discovered that it is used to trick unsuspecting recipients into disclosing personal information on a fake web page. Thus, we classified it as a phishing email. Usually, scammers behind such emails pretend to be legitimate companies or other entities. This p

OriginalAccessibility Adware (Mac)
Mac Virus

OriginalAccessibility Adware (Mac)

Our analysis shows that OriginalAccessibility exhibits characteristics commonly associated with adware. It is designed to bombard users with intrusive advertisements. These ads can expose users to various scams and other online threats. It is also worth noting that multiple security vendors flag

OtterCookie Malware
Trojan

OtterCookie Malware

OtterCookie is a piece of malicious software designed to steal information. This program has several variants, and it has been around since at least the autumn of 2024. Attacks involving OtterCookie have been linked to North Korean threat actors. This malware has been leveraged against targets as

Hunter (Prince) Ransomware
Ransomware

Hunter (Prince) Ransomware

Our team has discovered a ransomware variant based on Prince ransomware, called Hunter, during analysis of malware samples submitted to VirusTotal. Hunter encrypts data and appends the ".Hunter" extension to files. Also, it drops a ransom note ("Decryption Instructions.txt") and changes the deskto

Pdf2docs.com Redirect
Browser Hijacker

Pdf2docs.com Redirect

We have tested pdf2docs.com and found that it is supposed to provide search results, but it is actually a fake search engine. Our other finding is that pdf2docs.com is promoted through an extension (PDF2DOCS) that functions as a browser hijacker. Overall, pdf2docs.com and the associated extension

DHL - A Parcel Collection Has Been Registered Email Scam
Phishing/Scam

DHL - A Parcel Collection Has Been Registered Email Scam

Our analysis of the email revealed that it is a phishing email. It is crafted to appear as a notification from DHL (a multinational logistics company). The goal of this scam is to lure unsuspecting recipients into opening a fake web page and disclosing personal information. Such emails should be i

Norton Subscription Payment Has Failed POP-UP Scam
Phishing/Scam

Norton Subscription Payment Has Failed POP-UP Scam

"Norton Subscription Payment Has Failed" is a scam that our researchers found during a routine inspection of suspect websites. It warns users that their anti-virus subscription has expired and cannot be renewed. It must be emphasized that these claims are false, and this scam is not associated wi

Login-tab.com Redirect
Browser Hijacker

Login-tab.com Redirect

While analyzing the "Login Tab - Faster access to favorite sites" browser hijacker, our researchers discovered the login-tab.com webpage. It is a fake search engine that cannot provide search results and redirects to legitimate Internet websites. Browser hijackers promote sites of this kind (via