Virus and Spyware Removal Guides, uninstall instructions

KEYSTEAL Trojan (Mac)

What is KEYSTEAL?

KEYSTEAL is the name of a trojan targeting macOS Keychain data. This malware arrives onto systems as a trojanized app called ResignTool. Due to how sensitive the information stored on the Mac Keychain can be - this malware poses significant threats to user privacy.

   
Secureyourdatabase.live Ads

What kind of page is secureyourdatabase[.]live?

While checking out dubious websites, our researchers found the secureyourdatabase[.]live page. It promotes scams, pushes browser notification spam, and redirects visitors to different (likely unreliable/harmful) sites.

Most visitors enter webpages like secureyourdatabase[.]live through redirects caused by websites using rogue advertising networks.

   
Quickpcscanner.com Ads

What kind of page is quickpcscanner[.]com?

Quickpcscanner[.]com is a rogue webpage discovered by our research team during a routine inspection of dubious websites. It is designed to promote scams and spam browser notifications. Furthermore, quickpcscanner[.]com can redirect visitors to other (likely unreliable/dangerous) sites.

Webpages of this kind are typically accessed through redirects caused by sites that use rogue advertising networks.

   
Cyber Shield Adware

What is Cyber Shield?

While inspecting deceptive websites, we found a scam page stating that there is an "Important Update for Chrome" - from it, we downloaded and thus discovered the Cyber Shield browser extension. This piece of software claims to be a tool that improves online personal data security. However, our analysis revealed that Cyber Shield operates as adware instead.

   
Canadian (RRansom) Ransomware

What is Canadian (RRansom) ransomware?

Canadian (RRansom) is a malicious program classified as ransomware. It is designed to encrypt data and demand ransoms for the decryption tools.

After we executed a sample of this ransomware on our test system, it encrypted files and appended their filenames with a ".canadian" extension. To elaborate, a file originally named "1.jpg" appeared as "1.jpg.canadian", "2.png" as "2.png.canadian", and so forth.

Once the encryption process was concluded, a text file - "DECRYPT YOUR FILES.txt" - was dropped onto the desktop.

   
E-Mail Storage Bandwidth Limit Email Scam

What is "E-Mail Storage Bandwidth Limit"?

We investigated this email and learned that it was sent by scammers who aim to trick unsuspecting recipients into providing personal information on a deceptive page. This email is disguised as a letter from an email service provider. It instructs recipients to validate their email accounts.

   
Concept Design Drawings Email Virus

What is "Concept Design Drawings"?

While examining this email, our malware researchers found that it contains a malicious attachment. Threat actors behind it are pretending to be a company based in Dubai. Their goal is to trick recipients into executing the FormBook malware designed to steal sensitive information.

   
EngineFlow Adware (Mac)

What is EngineFlow?

While looking through new submissions to VirusTotal, our researchers discovered the EngineFlow application. After analyzing this app, we learned that it is adware. Additionally, we determined that EngineFlow belongs to the AdLoad malware family.

   
SEX3 Ransomware

What kind of malware is SEX3?

While inspecting malware samples submitted to VirusTotal, we found a new SATANA ransomware variant called SEX3. It encrypts files and appends the ".SEX3" extension to filenames. Also, it changes the desktop wallpaper and drops the "!satana!.txt" file containing contact and payment information.

An example of how SEX3 modifies filenames: it renames "1.jpg" to "1.jpg.SEX3", "2.png" to "2.png.SEX3", and so forth.

   
Yguekcbe Ransomware

What is Yguekcbe ransomware?

Yguekcbe is a ransomware that we found while inspecting new submissions to VirusTotal. Additionally, it is worth mentioning that this program is part of the Snatch ransomware family.

On our testing system, Yguekcbe encrypted files and appended their names with a ".yguekcbe" extension. For example, a file initially titled "1.jpg" as "1.jpg.yguekcbe", "2.png" as "2.png.yguekcbe", etc.

After the encryption process was finished, Yguekcbe dropped a ransom note - "HOW TO RESTORE YOUR FILES.TXT" onto the desktop. Based on the message within this file, we can determine Yguekcbe ransomware targets companies instead of home users.

   

Page 408 of 2105

<< Start < Prev 401 402 403 404 405 406 407 408 409 410 Next > End >>
About PCrisk

PCrisk is a cyber security portal, informing Internet users about the latest digital threats. Our content is provided by security experts and professional malware researchers. Read more about us.

Malware activity

Global malware activity level today:

Medium threat activity

Increased attack rate of infections detected within the last 24 hours.

Virus and malware removal

This page provides information on how to avoid infections by malware or viruses and is useful if your system suffers from common spyware and malware attacks.

Learn about malware removal