Virus and Spyware Removal Guides, uninstall instructions

Pcworksscanner.com Ads

What kind of page is pcworksscanner[.]com?

Pcworksscanner[.]com is a shady website that displays fake/deceptive messages to trick visitors into believing that their computers are infected. It runs the "McAfee - Your PC is infected with 5 viruses!" scam. Also, pcworksscanner[.]com asks for permission to show notifications. Our team discovered pcworksscanner[.]com while examining other dubious pages.

   
Audio Finder Adware

What is Audio Finder?

During a routine inspection of suspicious websites, our researchers found one promoting the Audio Finder browser extension. It is presented as a tool capable of detecting the source of audio on any webpage and then making it available for download. However, our inspection of this extension revealed that it operates as adware instead.

   
PureLogs Stealer

What kind of malware is PureLogs?

While checking the VirusTotal page for recently submitted malware samples, we discovered an information stealer called PureLogs. Cybercriminals use malware of this type to steal sensitive data that can be monetized in one way or another. Typically, information-stealing malware runs silently in the background.

   
Spin2wincash.xyz Ads

What kind of page is spin2wincash[.]xyz?

Spin2wincash[.]xyz is a rogue webpage that our researchers encountered while investigating suspicious sites. After inspecting this page, we determined that it is designed to promote scams and browser notification spam. It can also redirect visitors to other (likely untrustworthy/harmful) websites.

Most users access webpages like spin2wincash[.]xyz via redirects caused by websites using rogue advertising networks.

   
Reliabledesktopguard.site Ads

What kind of page is reliabledesktopguard[.]site?

Our research team discovered the reliabledesktopguard[.]site rogue webpage while inspecting dubious websites. This page promotes scams and browser notifications spam. It is also capable of redirecting visitors to other (likely unreliable/malicious) sites.

Reliabledesktopguard[.]site and similar webpages are most commonly accessed via redirects caused by pages that use rogue advertising networks, intrusive ads, spam notifications, or installed adware.

   
Nativepcprotocol.com Ads

What kind of page is nativepcprotocol[.]com?

After examining nativepcprotocol[.]com, we concluded that it is an untrustworthy website running the "McAfee - Your PC is infected with 5 viruses!" scam. The purpose of this page is to trick visitors into purchasing legitimate antivirus software. In addition to showing deceptive messages, nativepcprotocol[.]com asks for permission to show notifications.

   
MoneyMonger Malware (Android)

What is MoneyMonger?

MoneyMonger (also known as SpyLoan) is the name of a malicious program that infiltrates systems under the guise of various apps offering quick loan services. This malware uses the Flutter framework to hide its maliciousness and avoid detection. MoneyMonger operates as spyware and data-stealing malware.

It is actively used by cyber criminals to harass and threaten victims directly. At the time of writing, the malicious application was only available on third-party websites. While MoneyMonger campaigns operate worldwide, concentrated activity has been noted in India and Peru.

   
Bttu Ransomware

What kind of malware is Bttu?

Bttu is one of the Djvu ransomware variants. It encrypts data and appends the ".bttu" extension to the filenames of encrypted files. Also, Bttu ransomware creates the "_readme.txt" file to provide contact and payment information. An example of how Bttu renames files: it changes "1.jpg" to "1.jpg.bttu", "2.png" to "2.png.bttu", and so forth.

Djvu ransomware is often distributed alongside information stealers (e.g., RedLine or Vidar). Threat actors steal sensitive information from computers before encrypting files on them. Our team discovered Bttu ransomware while analyzing malware samples submitted to VirusTotal.

   
EssentialWindow Adware (Mac)

What is EssentialWindow?

Our researchers found the EssentialWindow app while inspecting new submissions to VirusTotal. After analyzing this piece of software, we determined that it is adware. EssentialWindow runs intrusive advertisement campaigns and collects private data. This application belongs to the AdLoad malware family.

   
Deposit Into Your Bitcoin Portfolio Email Scam

What is "Deposit Into Your Bitcoin Portfolio"?

We have examined this email and concluded that it is a phishing email written by scammers who promote crypt-related scam websites. Scammers behind it aim to steal cryptocurrency and (or) sensitive information. This email should be marked as spam and deleted.

   

Page 407 of 2126

<< Start < Prev 401 402 403 404 405 406 407 408 409 410 Next > End >>
About PCrisk

PCrisk is a cyber security portal, informing Internet users about the latest digital threats. Our content is provided by security experts and professional malware researchers. Read more about us.

Malware activity

Global malware activity level today:

Medium threat activity

Increased attack rate of infections detected within the last 24 hours.

Virus and malware removal

This page provides information on how to avoid infections by malware or viruses and is useful if your system suffers from common spyware and malware attacks.

Learn about malware removal