Step-by-Step Malware Removal Instructions

Himalayamount.top Ads
Notification Spam

Himalayamount.top Ads

Himalayamount[.]top is a rogue webpage discovered by our researchers during a routine investigation of suspicious sites. Upon examination, we learned that himalayamount[.]top promotes browser notification spam and redirects visitors to different (likely unreliable/dangerous) websites. Users prima

SMD69 Stealer
Trojan

SMD69 Stealer

SMD69 is a stealer-type malware. It is designed to extract and exfiltrate vulnerable data from infected systems. Stealers can also possess other harmful capabilities. SMD69 has been observed being proliferating using the ClickFix scam technique. As mentioned in the introduction, SMD69 is a

GuardFlare Adware
Adware

GuardFlare Adware

While examining the GuardFlare extension, we noticed that it can generate various advertisements. For this reason, we classified it as adware. Additionally, we discovered that GuardFlare can activate the "Managed by your organization" feature. It is worth noting that the installer distributing thi

QuickFind Browser Hijacker
Browser Hijacker

QuickFind Browser Hijacker

During our inspection of QuickFind, we found that this extension is a browser hijacker. It is designed to change the settings of a web browser to promote a fake search engine (finditfasts.com). Also, QuickFind enables the "Managed by your organization" feature and is distributed alongside another

Allowflix.com Ads
Notification Spam

Allowflix.com Ads

While inspecting allowflix[.]com, we discovered that it is one of the numerous web pages using clickbait to obtain permission to show notifications. As a rule, notifications from pages like allowflix[.]com are misleading/deceptive. Therefore, users should not agree to receive notifications from al

$CATS Airdrop Live Scam
Phishing/Scam

$CATS Airdrop Live Scam

During our examination of the site (catzclaim.pages[.]dev) promoting a $CATS airdrop, we found that it is not a legitimate crypto giveaway. Usually, these types of scams are used to extract money or personal information from unsuspecting individuals. Thus, it is advisable not to trust this platfor

Lido $stETH Airdrop Scam
Phishing/Scam

Lido $stETH Airdrop Scam

"Lido $stETH Airdrop" is a scam that imitates the Lido platform (lido.fi). It lures users with an stETH cryptocurrency token airdrop. However, this giveaway is fake and it is not associated with Lido or any other existing platforms and entities. This "Lido $stETH Airdrop" scheme is a cryptocurren

EtherMail ($EMT) Airdrop Scam
Phishing/Scam

EtherMail ($EMT) Airdrop Scam

While investigating deceptive sites, our researchers discovered this fake "EtherMail ($EMT) Airdrop". The scam impersonates the EtherMail platform (ethermail.io) running an EMT (EMAIL) token airdrop. It must be emphasized that this giveaway is fake, and it is not associated with the real EtherMai

Roundcube - Unusual Login Attempt Email Scam
Phishing/Scam

Roundcube - Unusual Login Attempt Email Scam

Our team has checked this email and learned that it masquerades as an alert from an email service provider. Scammers behind this fraudulent email aim to lure recipients into opening a fake website and disclosing personal information. Scams of this type are known as phishing attempts. Recipients sh

XIXTEXRZ Ransomware
Ransomware

XIXTEXRZ Ransomware

While browsing new malware submissions to VirusTotal, our researchers discovered the XIXTEXRZ ransomware. Malicious software of this kind encrypts files and demands ransoms for the decryption. On our test machine, XIXTEXRZ encrypted files and appended their names with a ".crypted" extension. To e