Step-by-Step Malware Removal Instructions

Microsoft Windows Locked Due To Unusual Activity POP-UP Scam
Phishing/Scam

Microsoft Windows Locked Due To Unusual Activity POP-UP Scam

Our researchers discovered the "Microsoft Windows Locked Due To Unusual Activity" technical support scam while investigating suspicious websites. This scheme masquerades as Microsoft's website warning visitors of system infections. The goal is to deceive victims into calling the fake support line

New Policy For Salary, Bonuses And Overtime Email Scam
Phishing/Scam

New Policy For Salary, Bonuses And Overtime Email Scam

Our team has analyzed this email and learned that it is deceptive. It is disguised as a notification from an organization regarding employment benefits. Scammers behind this email seek to steal personal information from recipients. Such emails are known as phishing attempts, and recipients should

FIOI Ransomware
Ransomware

FIOI Ransomware

FIOI is ransomware belonging to the Makop family. Our team discovered this variant during examination of samples submitted to VirusTotal. We found that FIOI encrypts files and appends the ".FIOI" extension (along with a string of random characters and an email address). Also, it changes the deskto

The Sandbox Game Scam
Phishing/Scam

The Sandbox Game Scam

During our inspection of the site (sandbox-game-airdrop.pages[.]dev), we found that it is a fake website mimicking the real one (sandbox[.]game). The fraudulent page is created by scammers who seek to steal funds (cryptocurrency) from unsuspecting individuals. Therefore, it is important not to int

Unclaimed Insurance Email Scam
Phishing/Scam

Unclaimed Insurance Email Scam

We have examined this email and found that it is crafted to trick recipients into believing they can receive a large sum of money for cooperation. Schemes like this one are known as inheritance scams. Typically, fraudsters behind them try to extract money and (or) personal information from unsuspe

SingleCamper Malware
Trojan

SingleCamper Malware

SingleCamper is an updated version of the RomCom RAT. SingleCamper was spotted being used as the primary implant in certain attacks carried out by threat actors. In these attacks, SingleCamper is responsible for executing all malicious post-compromise actions. It is loaded directly from the regist

SquidGrow Migration Claim Scam
Phishing/Scam

SquidGrow Migration Claim Scam

While browsing suspicious websites, our researchers discovered this "SquidGrow Migration Claim" scam endorsed on squidgrow-claim.pages[.]dev (note that it could be hosted elsewhere). This fake page imitates the SquidGrow platform (squidgrow.wtf) and functions as a cryptocurrency drainer. IMP

RoxiApp Unwanted Application
Potentially unwanted application

RoxiApp Unwanted Application

During our inspection, we could not determine what exactly the RoxiApp application does. However, we discovered that it installs alongside other unwanted components, and multiple security vendors have flagged the installer distributing RoxiApp as malicious. Therefore, users should avoid installing

REVRAC Ransomware
Ransomware

REVRAC Ransomware

REVRAC is a malicious program that encrypts data and demands ransoms for its decryption. Due to this behavior, this software is classed as ransomware. On our testing system, REVRAC encrypted files and altered their filenames. Original titles were appended with a unique ID assigned to the victim a

SWELL Airdrop Scam
Phishing/Scam

SWELL Airdrop Scam

This is a scam imitating the Swell Network (swellnetwork.io). It lures victims with a bogus cryptocurrency airdrop. This fake website operates as a cryptocurrency drainer. Victims of the "SWELL Airdrop" scheme cannot recover the stolen digital assets. IMPORTANT NOTE: We do not review crypto