Step-by-Step Malware Removal Instructions

Jackal Malware
Trojan

Jackal Malware

GoldenJackal, an APT group, has developed a collection of .NET malware tools known as Jackal. The Jackal toolset includes components such as JackalControl, JackalWorm, JackalSteal, JackalPerInfo, and JackalScreenWatcher. GoldenJackal typically focuses its attacks on government and diplomatic entit

Personalized Backgrounds Browser Hijacker
Browser Hijacker

Personalized Backgrounds Browser Hijacker

Upon testing the Personalized Backgrounds extension, we found that it is a browser hijacker designed to promote goog.personalizedbackground.com, a fake search engine. Personalized Backgrounds forces users to visit/use goog.personalizedbackground.com by changing the settings of a web browser.

Shapes Tab Browser Hijacker
Browser Hijacker

Shapes Tab Browser Hijacker

Shapes Tab is a rogue browser extension that we discovered while inspecting suspect webpages. It is presented as a tool that displays browser wallpapers. After analyzing this extension, we determined that it is browser-hijacking software. Shapes Tab makes alterations to browser settings in order t

Car Tab Browser Hijacker
Browser Hijacker

Car Tab Browser Hijacker

While investigating dubious websites, our researchers discovered the Car Tab browser extension. It is promoted as a tool that displays automobile-themed wallpapers. However, our analysis revealed that Car Tab is a browser hijacker. It changes browser settings and endorses (via redirects) the find.

TurkoRat Malware
Trojan

TurkoRat Malware

TurkoRat is the name of a malicious program classed as a stealer. This malware aims to steal sensitive information from infected machines. TurkoRat was observed being distributed in several malicious packages via the npm package repository. As mentioned in the introduction, TurkoRat is a s

AhRat Malware (Android)
Trojan

AhRat Malware (Android)

AhRat is a Remote Access Trojan (RAT) that focuses on infiltrating Android devices. Its distribution occurred through a trojanized screen recording application, which was disguised and offered for download on the Google Play store. The original version of the app that was uploaded to the store di

Ilitonline.com Ads
Notification Spam

Ilitonline.com Ads

While investigating suspicious websites, our research team discovered the ilitonline.com rogue webpage. It is designed to endorse browser notification spam and redirect users to other (likely dubious/malicious) websites. Users primarily access pages like ilitonline[.]com via redirects caused by si

Editortrip.com Ads
Notification Spam

Editortrip.com Ads

Editortrip[.]com is a rogue page that our research team discovered while inspecting questionable websites. It operates by promoting browser notification spam and redirecting visitors to other (likely untrustworthy/hazardous) sites. Most users enter webpages like editortrip[.]com via redirects gene

Mediatesupervis.com Ads
Notification Spam

Mediatesupervis.com Ads

After analyzing mediatesupervis[.]com, we discovered that the page employs a deceitful tactic to entice visitors into granting permission for notifications. We also observed that mediatesupervis[.]com redirects users to other questionable websites. As a result, it is strongly recommended to refrai

Your Account Is Successfully Debited POP-UP Scam
Phishing/Scam

Your Account Is Successfully Debited POP-UP Scam

Our analysis of this page revealed that it presents a fabricated system scan and employs deceptive tactics to coerce users into contacting a fraudulent technical support number. These scams, known as pop-up scams, often masquerade as legitimate websites and are utilized by scammers to engage in ma