Step-by-Step Malware Removal Instructions

KoSpy Malware (Android)
Trojan

KoSpy Malware (Android)

KoSpy is spyware targeting Android users who speak Korean and English. It masquerades as utility apps, employs a two-stage C2 infrastructure, and gathers a wide range of data from compromised devices. The malware is distributed through Google Play and third-party app stores such as APKPure.

Transfer On Death Email Scam
Phishing/Scam

Transfer On Death Email Scam

Upon reading this "Transfer On Death" email, we determined that it is spam. This message is a supposed proposal to add the recipient to a deceased client's insurance policy, thus enabling them to take possession of the Transfer On Death (TOD) deed. In other words, the scheme is to divide between

Sayadsleads.top Ads
Notification Spam

Sayadsleads.top Ads

We have inspected sayadsleads[.]top and found it to be a misleading website designed to trick visitors into granting it permission to show notifications. Once sayadsleads[.]top has this permission, it displays deceptive notifications to promote other dubious websites. Thus, this site should be avo

Tab Of Nature Browser Hijacker
Browser Hijacker

Tab Of Nature Browser Hijacker

Our analysis of Tab Of Nature has shown that it is a browser extension that hijacks a web browser. The extension achieves this by changing the settings within a browser. Users often add browser hijackers unintentionally, and it is advisable to avoid using such extensions to prevent potential priva

Exo Stealer
Trojan

Exo Stealer

Exo Stealer is an information stealer, a type of malware designed to extract sensitive data from infected devices. Once active, it transmits stolen data to cybercriminals, who can then misuse it for malicious purposes. Usually, malware of this type targets login credentials, financial details, and

You're Added To A New Group Email Scam
Phishing/Scam

You're Added To A New Group Email Scam

After inspecting the "You're Added To A New Group" email, we determined that it is spam. It is presented as an alert about the recipient being added to a workgroup. This is a phishing campaign that seeks to obtain victims' email account log-in credentials. The spam email with the subject "

SafeMail Potentially Unwanted Application
Potentially unwanted application

SafeMail Potentially Unwanted Application

During a routine investigation of untrustworthy websites, our research team discovered the SafeMail PUA (Potentially Unwanted Application). This app is promoted as a tool for checking the validity and reputation of email addresses. However, the promised functionality is not operational. PUAs ofte

Mail Cloud Server Email Scam
Phishing/Scam

Mail Cloud Server Email Scam

Our examination of the email has revealed that it is a phishing attempt. Emails of this kind are usually created to steal personal information from recipients. They are designed to appear important and urgent to trick recipients. This particular scam email is disguised as a security notification.