Virus and Spyware Removal Guides, uninstall instructions

DisLight Adware

What is DisLight?

DisLight is a rogue browser extension that our researchers discovered while inspecting dubious software-promoting websites. This extension promises to enable dark mode for simple design webpages. Instead, it operates as advertising-supported software (adware).

   
CoolADSBlockSearch Browser Hijacker

What is CoolADSBlockSearch?

CoolADSBlockSearch is a rogue browser extension. After analyzing this piece of software, we determined that it operates as a browser hijacker. CoolADSBlockSearch modifies browser settings to promote the cooladsblocksearch.com fake search engine.

   
DHL Express - CONFIDENTIALITY NOTICE Email Scam

What kind of email is "DHL Express - CONFIDENTIALITY NOTICE"?

Our inspection of the "DHL Express - CONFIDENTIALITY NOTICE" email uncovered that it is spam. This mail operates as a phishing scam. The letter is presented as a confidential message that recipients can access by providing their email account credentials.

It must be emphasized that these emails are fake, and they are not associated with the DHL logistics company.

   
Protect-data-2022.xyz Ads

What kind of page is protect-data-2022[.]xyz?

Our researchers discovered the protect-data-2022[.]xyz rogue site while investigating suspicious webpages. This page operates by promoting scams, pushing browser notification spam, and redirecting visitors to other (likely unreliable/malicious) websites.

Most users access pages like protect-data-2022[.]xyz through redirects caused by webpages that use rogue advertising networks, misspelled URLs, intrusive ads, spam notifications, or installed adware.

   
ClickDark Adware

What kind of application is ClickDark?

After testing the ClickDark application, our team learned that it shows annoying advertisements. Therefore, we classified ClickDark as adware. We discovered this app while examining deceptive websites offering/instructing us to download supposedly useful (or required) browser extensions.

   
Scam Ransomware

What is Scam ransomware?

While inspecting new submissions to VirusTotal, our research team discovered a ransomware-type program called Scam. It is yet another one based on the Chaos ransomware.

On our test machine, the Scam ransomware encrypted files and appended their filenames with a ".scam" extension. For example, a file originally titled "1.jpg" appeared as "1.jpg.scam", "2.png" as "2.png.scam", and so on for all of the affected files.

After the encryption process was finished, this ransomware changed the desktop wallpaper and created a text file named "read_it.txt". The wallpaper and file contained ransom notes.

   
QueueBuffer Adware (Mac)

What is QueueBuffer?

QueueBuffer is a piece of rogue software that our researchers discovered while inspecting new submissions to VirusTotal. Analyzing this app revealed that it operates as adware. Additionally, QueueBuffer belongs to the AdLoad malware family.

   
FirstKill Ransomware

What kind of malware is FirstKill?

While examining malware samples submitted to the VirusTotal, our team discovered FirstKill - ransomware that encrypts files. It is used to blackmail victims by demanding to pay for a decryption tool. FirstKill not only encrypts but also renames files (appends the ".FirstKill" extension), changes the desktop wallpaper, and creates the "CO_SIĘ_STAŁO.html" file.

"CO_SIĘ_STAŁO.html" file contains a ransom note. An example of how FirstKill renames files: it changes "1.jpg" to "1.jpg.FirstKill", "2.png" to "2.png.FirstKill", "3.exe" to "3.exe.FirstKill", and so forth.

   
DHL e-Shipping Invoice Email Scam

What kind of email is "DHL e-Shipping Invoice"?

After inspecting the "DHL e-Shipping Invoice" email, we determined that it is spam. This email spam campaign operates as a phishing scam. These letters claim to contain an invoice regarding a shipment, which recipients can view and inquire about by logging in with their email accounts. However, by attempting to do so - they will inadvertently disclose this data to scammers.

It must be stressed that this scam mail is in no way associated with the actual DHL logistics company, nor is it connected to the USPS (United States Postal Service), which the emails also mention.

   
I Paid For Products From Your Store Email Virus

What is "I Paid For Products From Your Store" email virus?

After inspecting this letter, our team concluded that its purpose is to trick recipients into infecting their computers with malware. We found that this email is disguised as a letter regarding a money refund and contains an attachment designed to download a file containing another (malicious) file.

   

Page 481 of 2125

<< Start < Prev 481 482 483 484 485 486 487 488 489 490 Next > End >>
About PCrisk

PCrisk is a cyber security portal, informing Internet users about the latest digital threats. Our content is provided by security experts and professional malware researchers. Read more about us.

Malware activity

Global malware activity level today:

Medium threat activity

Increased attack rate of infections detected within the last 24 hours.

Virus and malware removal

This page provides information on how to avoid infections by malware or viruses and is useful if your system suffers from common spyware and malware attacks.

Learn about malware removal