Step-by-Step Malware Removal Instructions

Elibomi Malware (Android)
Trojan

Elibomi Malware (Android)

Elibomi is multi-functional malware targeting Android Operating Systems (OSes). This malicious program can perform various actions on infected devices, and it can extract a broad range of sensitive data. This malware has been around since at least 2020, and it has multiple iterations. Recently, E

FakeReward Malware (Android)
Trojan

FakeReward Malware (Android)

FakeReward is the name of a malicious program targeting Android devices. It is designed to obtain personally identifiable and banking-related information. There are multiple variants of FakeReward; at least five versions have been spotted at the time of writing. FakeReward has been actively proli

SearchBlox Malware
Trojan

SearchBlox Malware

SearchBlox is a malicious Google Chrome browser extension. There are two variants of this extension, and both promise to allow users to search the Roblox video game platform servers for a specific player. Instead, this piece of malicious software targets data associated with Roblox and Rolimons -

Mafer Ransomware
Ransomware

Mafer Ransomware

Mafer is one of the VoidCrypt ransomware variants designed to encrypt files, append the victim's ID, filees@gmail.com email address, and the ".Mafer" extension to filenames, and drop a text file ("Read_Me!_.txt") containing a ransom note. Our team discovered Mafer while examining malware samples s

D0nut Ransomware
Ransomware

D0nut Ransomware

D0nut is a ransomware that encrypts files and appends the ".d0nut" extension to filenames (e.g., it renames "1.jpg" to "1.jpg.d0nut", "2.png" to "2.png.d0nut", and so forth). Also, D0nut drops two HTML files ("d0nut.html") and displays a pop-up window. They contain ransom notes. Screenshot of

Payment For McAfee Subscription Email Scam
Phishing/Scam

Payment For McAfee Subscription Email Scam

"Payment For McAfee Subscription" is the name of an email spam campaign. The letters can be plain or quite elaborate, but they all refer to purchases or renewals of the McAfee anti-virus. It must be emphasized that these emails are fake, and they are not associated with the actual McAfee Corp. Th

Walmart Gift Card POP-UP Scam
Phishing/Scam

Walmart Gift Card POP-UP Scam

While examining shady ads and websites, we discovered a scam website offering to get a Walmart gift card. Usually, scam websites like this one are used to extract personal information and (or) money. It is strongly recommended not to trust such pages. This scam website shows a pop-up messa

Mail Server Update Email Scam
Phishing/Scam

Mail Server Update Email Scam

Our team examined this email and learned that scammers sent it. The purpose of this letter is to trick unsuspecting recipients into entering personal information on a phishing website (fake login page). This email is disguised as a letter from an email service provider. It should be marked as spam

CustomSearch Browser Hijacker
Browser Hijacker

CustomSearch Browser Hijacker

During a routine inspection of suspicious software-promoting websites, our researchers discovered the CustomSearch application. Our analysis revealed that this app operates as a browser hijacker. It promotes fake search engines (e.g., nseext.info, customsear.ch, etc.) by causing redirects to them

A.E.S.R.T Ransomware
Ransomware

A.E.S.R.T Ransomware

A.E.S.R.T is ransomware that encrypts files, appends the ".AESRT" extension to filenames, and displays a ransom note. Our malware researchers discovered A.E.S.R.T while inspecting samples submitted to the VirusTotal website. An example of how A.E.S.R.T renames files: it changes "1.jpg" to "1.jpg.A