Virus and Spyware Removal Guides, uninstall instructions

Zoutubephaid.com Ads

What kind of page is zoutubephaid[.]com?

Zoutubephaid[.]com is a rogue webpage designed to push browser notification spam and redirect visitors to different (likely unreliable/malicious) websites.

Our researchers discovered this page while inspecting websites that use rogue advertising networks. Redirects caused by such sites are how most users enter zoutubephaid[.]com and similar pages. However, mistyping a URL, clicking on an intrusive advertisement or a spam notification - can also result in entry to a rogue website. Adware may also force-open these webpages.

   
Due To Recent Upgrade Or Error Email Scam

What kind of email is "Due To Recent Upgrade Or Error"?

Our analysis of the "Due To Recent Upgrade Or Error" email uncovered that it is spam use for phishing purposes. This letter baits recipients into disclosing their email account log-in credentials by claiming that the password will expire soon. When users press either of the links in the email, they are redirected to a phishing website that mimics the supposedly endangered account's site.

   
SiMay RAT

What kind of malware is SiMay?

SiMay is the name of malware designed to allow an attacker to remotely control/access an infected computer. This type of malware is called a Remote Administration Trojan (RAT). RATs are used to steal information or files, distribute malware, and for other purposes. We have discovered SiMay while examining malware samples submitted to VirusTotal.

   
Unlocker Ransomware

What is Unlocker ransomware?

Unlocker is a ransomware-type program. After being launched on our test machine, this ransomware encrypted files and appended their filenames with ".[unlocker@onionmail.org].[victim's_ID].lock", consisting of the attackers' email address, a unique ID assigned to the victim, and the ".lock" extension. For example, a file originally titled "1.jpg" appeared as "1.jpg.[unlocker@onionmail.org].[ADGW9].lock".

Once this process was completed, a ransom note - "README_WARNING.TXT" - was created.

   
Bomber Ransomware

What kind of malwre is Bomber?

Bomber is ransomware variant that belongs to the Amnesia ransomware family. We have discovered Bomber ransomware while checking VirusTotal for recently submitted malware samples. This variant encrypts files and modifies filenames by replacing their names with a string of random characters and appending the ".bomber" to them.

Also, Bomber creates a ransom note (the "HOW TO RECOVER ENCRYPTED FILES.TXT" text file). An example of how this ransomware renames files: it replaces "1.jpg" with "76VqRuusf1YPhpNNAcCqNwVi79RqkUKW4TEwk58b2+MMf9+p.bomber", "2.png" with "HGgTZOJvQ6PvljFoPtIAcr9oi6kgvbnml4fhjkdl4+Lpo6+j.bomber", and so forth.

   
BrowserDisplay Adware (Mac)

What kind of application is BrowserDisplay?

Our team has tested the BrowserDisplay application and found that it operates as adware - it generates intrusive advertisements. We have discovered this application while examining various shady websites. Typically, apps like BrowserDisplay are promoted and distributed using deceptive methods.

   
Noobilub.com Ads

What kind of page is noobilubi[.]com?

Noobilubi[.]com displays deceptive content to trick visitors into allowing it to show notifications and redirects them to other pages designed to do the same. Typically, these pages do not get visited on purpose. Our team has discovered noobilubi[.]com during periodical research on other shady websites that use rogue advertising networks.

   
Hipnoticrec.biz Ads

What is hipnoticrec[.]biz?

The purpose of hipnoticrec[.]biz is to trick visitors into agreeing to receive notifications and redirect them to shady websites. We have discovered hipnoticrec[.]biz while examining web pages that use rogue advertising networks. It cannot be trusted or should be allowed to deliver notifications.

   
Express-new.com Ads

What kind of page is express-new[.]com?

Our research team found the express-new[.]com rogue webpage during a routine inspection of untrustworthy sites. It is designed to lure visitors into allowing it to deliver browser notification spam. Express-new[.]com is also capable of redirecting users to other (likely unreliable/malicious) websites. Most visitors to such webpages access them via others that employ rogue advertising networks.

   
17uoEtuihi6Lsg4hdedT7PUhF4FNgBPD2F Malware

What is 17uoEtuihi6Lsg4hdedT7PUhF4FNgBPD2F?

17uoEtuihi6Lsg4hdedT7PUhF4FNgBPD2F is a clipper-type malicious program, which our researchers discovered while inspecting "cracked" software download websites. Also known as "clipboard hijackers", malware of this type is designed to replace the data copied into the clipboard. Clippers are used to redirect outgoing cryptocurrency transactions into the attackers' digital wallets.

   

Page 618 of 2139

<< Start < Prev 611 612 613 614 615 616 617 618 619 620 Next > End >>
About PCrisk

PCrisk is a cyber security portal, informing Internet users about the latest digital threats. Our content is provided by security experts and professional malware researchers. Read more about us.

Malware activity

Global malware activity level today:

Medium threat activity

Increased attack rate of infections detected within the last 24 hours.

Virus and malware removal

This page provides information on how to avoid infections by malware or viruses and is useful if your system suffers from common spyware and malware attacks.

Learn about malware removal