Virus and Spyware Removal Guides, uninstall instructions

Netflix - We've Suspended Your Membership Email Scam

What kind of email is "Netflix - We've Suspended Your Membership"?

After inspecting the "Netflix - We've Suspended Your Membership" email, we determined that it is fake. This spam letter informs recipients that their Netflix membership has been suspended, and the payment information needs to be renewed to prevent the subscription from expiring. By using these fake claims, the email attempts to trick users into providing their account log-in credentials to a bogus Netflix website.

   
Mydailysecurityguard.site Ads

What kind of page is mydailysecurityguard[.]site?

We examined mydailysecurityguard[.]site and found that this page runs the "Norton Security - Your PC might be infected with viruses!" scam and asks for permission to show shady notifications. We encountered this site while inspecting pages that use rogue advertising networks. Users do not visit websites like mydailysecurityguard[.]site intentionally.

   
Fake "System Update" RAT (Android)

What is Fake "System Update" RAT?

Fake "System Update" RAT - refers to a Remote Access Trojan (RAT) targeting Android devices, which is often disguised as an application offering system updates. However, it must be mentioned that this trojan has been observed using another disguise - an app supposedly providing news and live broadcasts of the 2022 FIFA World Cup.

RATs are a type of malware that enable remote access and control over infected machines. These malicious programs tend to be incredibly versatile and have varied functionalities and uses. The fake "System Update" malware can perform various malicious activities with a particular focus on spying and data gathering.

   
MEOW Ransomware

What kind of malware is MEOW?

MEOW is ransomware based on other ransomware called CONTI. MEOW encrypts files and appends the ".MEOW" extension to their filenames. It also drops the "readme.txt" file (a ransom note). An example of how MEOW ransomware modifies filenames: it renames "1.jpg" to "1.jpg.MEOW", "2.png" to "2.png.MEOW", and so forth.

   
Doenerium Stealer

What kind of malware is Doenerium?

Doenerium is an information stealer masquerading as Windows Malicious Software Removal Tool. This malware targets cryptocurrency wallets, Internet browsers, clipboard data, and system information. Also, the malware author uses Doenerium to mine cryptocurrency on computers attacked by threat actors distributing this malware.

   
OBZ Ransomware

What is OBZ ransomware?

While inspecting new submissions to VirusTotal, our researchers discovered the OBZ ransomware-type program that is identical to U2K and MME.

After we executed a sample of OBZ on our testing system, it encrypted files and appended their filenames with a ".OBZ" extension. For example, a file initially titled "1.jpg" appeared as "1.jpg.OBZ", "2.png" as "2.png.OBZ", and so on. Depending on the ransomware's sample the extension might be in lowercase letters.

Once this process was completed, a ransom note - "ReadMe.txt" - was created. It is noteworthy that on our test system, OBZ ransomware's process on Windows Task Manager appeared as "Traffic Light" (however, the name may vary).

   
Filedownloader.cloud Ads

What kind of page is filedownloader[.]cloud?

Filedownloader[.]cloud is a shady website designed to download an installer that installs potentially malicious applications. Our team discovered filedownloader[.]cloud while inspecting pages that use rogue advertising networks (e.g., illegal movie streaming pages, torrent sites). Users do not normally visit sites like filedownloader[.]cloud on purpose.

   
PUTIN Ransomware

What kind of malware is PUTIN?

PUTIN is ransomware belonging to the CONTI family. It prevents victims from accessing data by encrypting it. Also, PUTIN appends the ".PUTIN" extension to the filenames of all encrypted files and drops the "README.txt" file that contains contact information.

An example of how PUTIN ransomware renames encrypted files: "1.jpg" to "1.jpg.PUTIN", "2.png" to "2.png.PUTIN", and so forth.

   
AdvancedHelper Adware (Mac)

What kind of application is AdvancedHelper?

Our team tested the AdvancedHelper application and found that it operates as adware - it displays annoying advertisements. It is uncommon for advertising-supported software to be downloaded and installed knowingly. We discovered AdvancedHelper on a deceptive page.

   
TrackAnalyser Adware (Mac)

What is TrackAnalyser?

TrackAnalyser is a rogue application that we discovered while inspecting new submissions to VirusTotal. After analyzing this piece of software, we determined that it is adware belonging to the AdLoad malware family.

   

Page 413 of 2124

<< Start < Prev 411 412 413 414 415 416 417 418 419 420 Next > End >>
About PCrisk

PCrisk is a cyber security portal, informing Internet users about the latest digital threats. Our content is provided by security experts and professional malware researchers. Read more about us.

Malware activity

Global malware activity level today:

Medium threat activity

Increased attack rate of infections detected within the last 24 hours.

Virus and malware removal

This page provides information on how to avoid infections by malware or viruses and is useful if your system suffers from common spyware and malware attacks.

Learn about malware removal