Step-by-Step Malware Removal Instructions

New Salary Changes Email Scam
Phishing/Scam

New Salary Changes Email Scam

Our team has examined this email and concluded that it is a phishing email masquerading as a letter regarding salary changes. It is created to appear legitimate and trick unsuspecting recipients into disclosing personal information on a fake website. It is important to recognize such emails and av

WeHaveSolution Ransomware
Ransomware

WeHaveSolution Ransomware

While examining malware samples uploaded to VirusTotal, we discovered ransomware known as WeHaveSolution. After infiltration, WeHaveSolution encrypts files, changes the desktop wallpaper, drops a ransom note ("READ_NOTE.html"), and appends the ".wehavesolution247" extension to filenames. For exam

$MSC Token Airdrop Scam
Phishing/Scam

$MSC Token Airdrop Scam

While inspecting dubious sites, our researchers discovered this fake "$MSC Token Airdrop" on app.mosaic[.]trading (keep in mind that it could be hosted elsewhere). The scam enticed users into exposing their digital wallet to a cryptocurrency drainer by promoting a fraudulent airdrop. Hence, victim

Webmail Validation Notice Email Scam
Phishing/Scam

Webmail Validation Notice Email Scam

Our inspection of the "Webmail Validation Notice" email revealed that it is spam. This message claims that incoming emails are failing to reach the recipient's inbox due to an unresolved error. With this lure, the letter tricks users into visiting a phishing website that targets email account log-

PSLoramyra Malware
Trojan

PSLoramyra Malware

PSLoramyra is a loader-type malware. Programs within this classification are designed to cause chain infections, i.e., download/install additional malware or malicious components. PSLoramyra is a rather sophisticated loader; it is considered a file-less malware since it executes its payload direct

UwU Ransomware
Ransomware

UwU Ransomware

While investigating new malware submissions to VirusTotal, our researchers discovered UwU ransomware. Malicious software within this classification encrypts data and demands payment for their decryption. On our test machine, UwU encrypted files and altered their filenames by appending them with a

Everesthike.top Ads
Notification Spam

Everesthike.top Ads

Our researchers found the everesthike[.]top rogue page while investigating dubious websites. Upon inspection, we learned that this webpage promotes spam browser notifications and generates redirects to other (likely unreliable/hazardous) sites. The majority of visitors to everesthike[.]top and si

$EBULL Airdrop Scam
Phishing/Scam

$EBULL Airdrop Scam

Our analysis of the website (ethereumbull[.]app) reveals that it impersonates the real site, ethereumbull.com. This fraudulent platform is designed to deceive users into actions that could lead to substantial financial losses. We strongly recommend exercising caution when encountering such sites t

I Have Penetrated Your Device's Operating System Email Scam
Phishing/Scam

I Have Penetrated Your Device's Operating System Email Scam

We have reviewed this email and determined it to be fraudulent. It claims that a hacker has infiltrated the recipient’s operating system. There are at least two versions of this scam, with the alleged threat possibly phrased differently in other variants. However, the purpose of this scam is to ex

Check MoveDrop Eligibility Scam
Phishing/Scam

Check MoveDrop Eligibility Scam

"Check MoveDrop Eligibility" is a scam that we discovered on movement-network[.]xyz (could be hosted elsewhere). It imitates Movement Network (movementnetwork.xyz) running an airdrop. Users are lured into exposing their digital wallets to a cryptocurrency drainer. It must be emphasized that this