Virus and Spyware Removal Guides, uninstall instructions

Sandgerl.com POP-UP Scam (Mac)

What kind of page is sandgerl[.]com?

Sandgerl[.]com is a deceptive website running a pop-up scam. It displays a fake system notification to trick visitors into believing that their devices are compromised (hacked). Our team has discovered sandgerl[.]com while inspecting other pages that use rogue advertising networks (sites that display shady ads and redirect to dubious pages).

   
Kekware Ransomware

What is Kekware ransomware?

Kekware is a piece of malicious software classified as ransomware. It is designed to encrypt data and make ransom demands for the decryption.

We obtained a sample of Kekware from VirusTotal and launched it onto our test machine. This ransomware encrypted files and renamed them following this pattern - "[random_string].[original_extension][random_string].cyn". For example, a file initially titled "1.jpg" appeared as "7462.jpg7088.cyn". Afterward, a ransom note - "YcynNote.txt" was dropped onto the desktop.

   
Onlinenothome.com Ads

What kind of page is onlinenothome[.]com?

We have examined the onlinenothome[.]com page and learned that it uses a clickbait technique to trick visitors into allowing it to show notifications. It also redirects visitors to a potentially malicious page. Our team has discovered onlinenothome[.]com while inspecting various pages that use rogue advertising networks.

   
Errz Ransomware

What kind of malware is Errz?

Our malware researchers have discovered a new Djvu ransomware variant called Errz. It was found while examining malware samples submitted to the VirusTotal site. Errz is ransomware that encrypts files and appends the ".errz" extension to filenames. It provides a ransom note by creating a text file named "_readme.txt".

An example of how Errz renames files: it changes "1.jpg" to "1.jpg.errz", "2.png" to "2.png.errz", and so forth.

   
CANADIAN LOTTERY Email Scam

What is kind of scam is "CANADIAN LOTTERY" scam?

Our team has examined this email and concluded that it is a typical lottery scam. Scammers behind it attempt to trick recipients into sending them money (and possibly personal information) by claiming that they have won a lottery. This email is disguised as a Canadian lottery winning notice.

   
Bluestringline.com Ads

What kind of page is bluestringline[.]com?

Our researchers found the bluestringline[.]com rogue webpage while inspecting dubious sites. This page is designed to push browser notification spam and redirect visitors to different (likely deceptive/malicious) websites. Most users access sites like bluestringline[.]com via redirects caused by pages that use rogue advertising networks.

   
Cricket Start Browser Hijacker

What is Cricket Start?

While inspecting dubious download websites, we found the Cricket Start browser extension. It promises quick access to Cricket sports results and updates. After analyzing this piece of software, we determined that it operates as a browser hijacker promoting the search.nstart.online fake search engine.

   
World Health Organization Beneficiary Email Scam

What kind of email is "World Health Organization Beneficiary"?

Following our inspection of the "World Health Organization Beneficiary" email, we determined that it is spam that operates as a phishing scam.

These fake letters attempt to extract recipients' personally identifiable details - by claiming that this information must be provided to receive a huge financial grant. These spam emails are disguised as letters from the World Health Organization (WHO).

   
Ultimate Ad Eraser Adware

What is Ultimate Ad Eraser?

While inspecting dubious download websites, our researchers found the Ultimate Ad Eraser browser extension. This piece of software is promoted as an adblocker - a tool capable of removing and altering online ads. However, after analyzing Ultimate Ad Eraser, we learned that it operates as adware instead. In addition to running intrusive advertisement campaigns, this extension also spies on users' browsing activity.

   
Nominatus Ransomware 2

What is Nominatus Ransomware 2?

Nominatus Ransomware 2 is malware that encrypts files and generates a ransom note (the "NominatusRansomware2Message.txt" file). We have discovered this ransomware while inspecting malware samples submitted to the VirusTotal website. Unlike most ransomware variants, Nominatus Ransomware 2 does not rename the encrypted files.

   

Page 586 of 2138

<< Start < Prev 581 582 583 584 585 586 587 588 589 590 Next > End >>
About PCrisk

PCrisk is a cyber security portal, informing Internet users about the latest digital threats. Our content is provided by security experts and professional malware researchers. Read more about us.

Malware activity

Global malware activity level today:

Medium threat activity

Increased attack rate of infections detected within the last 24 hours.

Virus and malware removal

This page provides information on how to avoid infections by malware or viruses and is useful if your system suffers from common spyware and malware attacks.

Learn about malware removal