Step-by-Step Malware Removal Instructions

EXTEN Ransomware
Ransomware

EXTEN Ransomware

EXTEN is a ransomware-type program discovered by our researchers during a routine inspection of new file submissions to the VirusTotal site. Ransomware operates by encrypting data in order to demand ransoms for its decryption. On our testing system, EXTEN encrypted files and added a ".EXTEN" exte

Korvixnaro.co.in Ads
Notification Spam

Korvixnaro.co.in Ads

Korvixnaro.co[.]in is a rogue webpage designed to endorse spam browser notifications and redirect users to other (likely untrustworthy/dangerous) sites. The majority of visitors to korvixnaro.co[.]in and similar pages access them through redirects produced by websites utilizing rogue advertising

Nano Ethereum (NanoETH) Staking Scam
Phishing/Scam

Nano Ethereum (NanoETH) Staking Scam

Our research team found this fake "Nano Ethereum (NanoETH) Staking" page during a routine investigation of suspicious websites. It promises eligible users entry to an ongoing staking round. This scam operates as a crypto drainer, i.e., by stealing funds from exposed wallets. IMPORTANT NOTE:

Action Required On Your Email Account Scam
Phishing/Scam

Action Required On Your Email Account Scam

Upon inspecting this "Action Required On Your Email Account" message, we determined that it is spam. This email states that the recipient's provider is implementing an update to the email service to improve its reliability and security. The spam campaign aims to deceive recipients into disclosing

Fake Troll Coin Website
Phishing/Scam

Fake Troll Coin Website

While investigating suspect sites, our research team discovered this fake "Troll Coin" website (claim-trololol[.]io; possibly other domains). The page imitates the official site of the TROLL memecoin (troll.run). This scam aims to deceive users into exposing their digital wallets to a cryptocurren

Taro Ransomware
Ransomware

Taro Ransomware

Taro is a ransomware-type program discovered by our researchers during a routine inspection of new submissions to the VirusTotal website. This program is part of the MedusaLocker ransomware family. Malware within this classification works by encrypting data and demanding ransoms for the decryption

Bruk Ransomware
Ransomware

Bruk Ransomware

Our researchers discovered Bruk ransomware while reviewing new malware submissions to the VirusTotal website. This malicious program is designed to encrypt data and demand payment for the decryption. After we launched a sample of Bruk on our test machine, it encrypted files and added a ".{victim'

McAfee Online Scan Completed POP-UP Scam
Phishing/Scam

McAfee Online Scan Completed POP-UP Scam

While investigating suspect websites, our researchers discovered the "McAfee Online Scan Completed" scam. It claims to have performed a system scan and detected a threat. The aim is to trick users into downloading/installing or purchasing a piece of software. It must be emphasized that this scam i

$TRENCHES Token Airdrop Scam
Phishing/Scam

$TRENCHES Token Airdrop Scam

Our researchers found this fake "$TRENCHES Token Airdrop" webpage (parker-drops[.]xyz; potentially other domains) while investigating dubious sites. The purpose of this deceptive page is to entice users into exposing their digital wallets to a cryptocurrency drainer with an airdrop-themed lure. It

$SVJ Token Airdrop Scam
Phishing/Scam

$SVJ Token Airdrop Scam

Our research team found this fake "$SVJ Token" airdrop while investigating untrustworthy websites. After inspecting this webpage, we determined that it is a drainer scam. It entices users with a potential "$SVJ" token airdrop, thus luring them into exposing their cryptowallets to a cryptocurrency-