Virus and Spyware Removal Guides, uninstall instructions

Sheeva Ransomware

What is Sheeva ransomware?

Our research team discovered the Sheeva ransomware during a routine inspection of new malware submissions to VirusTotal.

When we executed a sample of Sheeva on our test machine, it encrypted files and changed their filenames. Affected files were renamed according to this pattern - "id[victim's_ID].[Sheeva@onionmail.org].[original_filename].sheeva", e.g., a file initially titled "1.jpg" appeared as "id[xmrJ9Lve].[Sheeva@onionmail.org].1.jpg.sheeva".

Once the encryption process was completed, this ransomware created a ransom-demanding message named "sheeva.txt" on the desktop.

   
Hexaput0n.click Ads

What kind of page is hexaput0n[.]click?

While inspecting questionable websites, our research team discovered the hexaput0n[.]click page. It operates by running scams, promoting browser notification spam, and redirecting visitors to different (likely untrustworthy/dangerous) sites. Users typically enter these webpages through redirects caused by websites using rogue advertising networks.

   
DimScreen Adware

What is DimScreen?

DimScreen is a rogue browser extension that our researchers found while inspecting dubious download webpages. It is endorsed as a tool capable of enabling dark mode for simple-design websites. After analyzing this piece of software, we determined that DimScreen operates as adware.

   
DigitalInitiator Adware (Mac)

What is DigitalInitiator?

During a routine inspection of new submissions to VirusTotal, our research team discovered the DigitalInitiator rogue application. Our analysis of this app revealed that it operates as advertising-supported software (adware) and is part of the AdLoad malware family.

   
Mechatronics Industrial Equipment Email Virus

What kind of email is "Mechatronics Industrial Equipment"?

Our inspection of this "Mechatronics Industrial Equipment" email revealed that it is fake and intended to infect recipients' devices with the Agent Tesla RAT (Remote Access Trojan).

This spam email supposedly relates to a payment. However, this letter is in no way associated with the legitimate Mechatronics Industrial Equipment company or any other real entities.

   
Get-shields.com Ads

What kind of page is get-shields[.]com?

While inspecting dubious sites, our research team discovered the get-shields[.]com rogue webpage. It promotes scams, pushes browser notification spam, and redirects visitors to different (likely untrustworthy/malicious) websites. Most users enter such pages through redirects caused by sites using rogue advertising networks.

   
IceXLoader Malware

What is IceXLoader?

IceXLoader is a loader-type malware written in the Nim programming language. Malicious programs within this classification are designed to cause chain infections. In other words, they operate by downloading/installing additional malicious components or malware onto compromised systems.

   
Webnotificationsgroup.com Ads

What kind of page is webnotificationsgroup[.]com?

Webnotificationsgroup[.]com is a rogue webpage that our researchers discovered while inspecting untrustworthy sites. It is designed to promote browser notification spam and redirect visitors to other (likely unreliable/dangerous) websites. Most users enter such pages through redirects caused by pages using rogue advertising networks.

   
Auto Skip Ads Adware

What is Auto Skip Ads?

Auto Skip Ads is the name of a browser extension that our researchers found while inspecting questionable software-promoting sites. This piece of software promises a feature that blocks/skips advertisements on YouTube. However, our analysis revealed that this extension operates as adware instead. Auto Skip Ads displays adverts and collects browsing-related data.

   
Athree.xyz Ads

What kind of page is athree[.]xyz?

While inspecting dubious websites, our research team found the athree[.]xyz rogue page. It is designed to load deceptive material, promote browser notification spam, and redirect visitors to other (likely untrustworthy/malicious) webpages. Users typically enter sites like athree[.]xyz through pages using rogue advertising networks.

   

Page 556 of 2139

<< Start < Prev 551 552 553 554 555 556 557 558 559 560 Next > End >>
About PCrisk

PCrisk is a cyber security portal, informing Internet users about the latest digital threats. Our content is provided by security experts and professional malware researchers. Read more about us.

Malware activity

Global malware activity level today:

Medium threat activity

Increased attack rate of infections detected within the last 24 hours.

Virus and malware removal

This page provides information on how to avoid infections by malware or viruses and is useful if your system suffers from common spyware and malware attacks.

Learn about malware removal