Step-by-Step Malware Removal Instructions

Andrew Tate Crypto Giveaway Scam
Phishing/Scam

Andrew Tate Crypto Giveaway Scam

Upon investigating this scam, we have determined that it is a classic crypto giveaway scam that purports to be orchestrated by a public figure (in this instance, Andrew Tate). The scammers' objective behind it is to dupe unsuspecting individuals into transferring their cryptocurrency funds. It is

Critical Threat Detected: Adware App POP-UP Scam
Phishing/Scam

Critical Threat Detected: Adware App POP-UP Scam

While examining this scam, our team learned that it is a technical support scam delivered by a deceptive website designed to trick unsuspecting visitors into calling a fake number (contacting scammers). This scam page displays multiple fake messages urging visitors to take immediate action. Typica

BlackByteNT Ransomware
Ransomware

BlackByteNT Ransomware

BlackByteNT is ransomware that blocks access to files by encrypting them. Also, BlackByteNT modifies filenames and creates a text file (a ransom note) named "BB_Readme_[random_string].txt". It renames files by replacing their names with a string of random characters and appending the ".blackbytent

WiKoN Ransomware
Ransomware

WiKoN Ransomware

During our examination of malware samples submitted to VirusTotal, we discovered ransomware belonging to the Xorist family dubbed WiKoN. This ransomware encrypts files, appends the ".WiKoN" extension to filenames, changes the desktop wallpaper, creates the "HOW TO DECRYPT FILES.txt" file (a ransom

Authentication Required Email Scam
Phishing/Scam

Authentication Required Email Scam

Upon inspection, we have determined that this email is fraudulent and contains an attachment. It intends to mislead unsuspecting individuals into divulging personal information. Such emails are referred to as phishing emails. It is advised that recipients disregard such emails. This email

Justcoolcaptcha.top Ads
Notification Spam

Justcoolcaptcha.top Ads

After analyzing justcoolcaptcha[.]top, we discovered that this website displays a deceptive message and requests authorization to display notifications. Also, justcoolcaptcha[.]top may redirect to other sites of this kind. We came across justcoolcaptcha[.]top while scrutinizing sites that employ f

Charmant Ransomware
Ransomware

Charmant Ransomware

While checking the VirusTotal website for recently submitted malware samples, we discovered Charmant ransomware. This malware encrypts data, appends the ".charmant" extension to filenames, and creates a ransom note (the "#RECOVERY#.txt" file). An example of how Charmant renames files: it changes

ExpandedOrigin Adware (Mac)
Mac Virus

ExpandedOrigin Adware (Mac)

Upon our investigation of the ExpandedOrigin application, we found that it exhibits intrusive advertising behavior, leading us to classify ExpandedOrigin as adware. Adware is frequently distributed through questionable and deceptive means, making it easy for unsuspecting users to download and in

Nitz Ransomware
Ransomware

Nitz Ransomware

Our recent analysis of malware samples submitted to VirusTotal has revealed the emergence of a new member of the Djvu ransomware family called Nitz. Its primary objective is to encrypt files on the compromised device and modify their filenames by adding the ".nitz" extension. Also, Nitz generates

Nifr Ransomware
Ransomware

Nifr Ransomware

While analyzing malware samples submitted to VirusTotal, our team came across Nifr ransomware, which belongs to the Djvu family. Upon infecting a computer, Nifr encrypts files and adds the ".nifr" extension to their filenames. For instance, a file originally named "1.jpg" would be renamed to "1.jp