Step-by-Step Malware Removal Instructions

Kiqu Ransomware
Ransomware

Kiqu Ransomware

During our examination of malware samples submitted to the VirusTotal website, we identified a ransomware variant referred to as Kiqu. This ransomware encrypts files and modifies their filenames by appending the ".kiqu" extension. Also, Kiqu generates a text file ("_readme.txt") which contains a r

ConfigInput Adware (Mac)
Mac Virus

ConfigInput Adware (Mac)

Our research team found the ConfigInput app while inspecting new submissions to the VirusTotal website. After examining this application, we determined that it is advertising-supported software (adware) belonging to the AdLoad malware family. ConfigInput is designed to generate revenue for its d

Mail Account Deactivation Notice Email Scam
Phishing/Scam

Mail Account Deactivation Notice Email Scam

After inspecting the "Mail Account Deactivation Notice" letter, we determined that it is a phishing email. This mail states that the recipient's account will be deactivated, and to prevent this – an authentication process using the email password is necessary. However, all these claims are fake an

Search-content.com Redirect
Browser Hijacker

Search-content.com Redirect

Search-content.com is the address of a fake search engine. Our researchers discovered this site while investigating deceptive webpages. From one such page, an installer containing the Apps browser hijacker was downloaded. This rogue browser extension promoted (via redirects) search-content.com. Ho

Final Release Waiver Email Scam
Phishing/Scam

Final Release Waiver Email Scam

After carefully examining this email, our investigation revealed that it is a phishing attempt orchestrated by scammers seeking to obtain personal information from unsuspecting recipients. The email includes a deceptive attachment that leads to a fraudulent website, intending to trick users into d

WyrmSpy Malware (Android)
Trojan

WyrmSpy Malware (Android)

WyrmSpy is a piece of malicious software classed as spyware. This Android-targeting malware has been used since at least 2017 to carry out cyber-espionage motivated attacks. WyrmSpy is linked to APT41 (aka BARIUM, Double Dragon, and Winnti) – a group backed by the Chinese state. Expanding their o

DragonEgg Malware (Android)
Trojan

DragonEgg Malware (Android)

DragonEgg is the name of a spyware-type malware that targets Android operating systems. The malicious program relies on various downloaded modules to carry surveillance out operations. This malware has been around since as early as January 2021. DragonEgg is associated with the Chinese state-back

BundleBot Malware
Trojan

BundleBot Malware

BundleBot is malware that operates covertly, flying under the radar, and primarily targets systems using the dotnet bundle (single-file) self-contained format. BundleBot is a sophisticated stealer and bot that poses a significant threat to the security and privacy of affected systems. Victims shou

Choalauysurvey.top Ads
Notification Spam

Choalauysurvey.top Ads

Our research team discovered the choalauysurvey[.]top rogue page while inspecting dubious websites. It operates by promoting browser notification spam and by redirecting visitors to other (likely unreliable/dangerous) sites. Users typically enter pages like choalauysurvey[.]top via redirects cause

Elevate Tab Browser Hijacker
Browser Hijacker

Elevate Tab Browser Hijacker

While examining the Elevate Tab browser extension, our team noticed that it makes certain changes in the settings of a web browser. Elevate Tab modifies those settings to promote a fake search engine search.elevatetab.com. Apps that exhibit such behavior are known as browser hijackers. Ele