Step-by-Step Malware Removal Instructions

Pending Messages On Our Remote Server Email Scam
Phishing/Scam

Pending Messages On Our Remote Server Email Scam

Our inspection of the "Pending Messages On Our Remote Server" email revealed that it operates as a phishing scam. This letter seeks to obtain the recipient's email account log-in credentials by making false claims about messages failing to reach their inbox. The spam email with the subject

ModemMaterial Adware (Mac)
Mac Virus

ModemMaterial Adware (Mac)

ModemMaterial is the name of an application our team discovered after downloading and using a fake installer for the Adobe Flash Player. While testing ModemMaterial, we learned that it generates intrusive advertisements. Software that shows unwanted advertisements is called adware. Adwar

Unique Ransomware
Ransomware

Unique Ransomware

Unique is ransomware that makes files inaccessible by encrypting them, modifies their filenames, and generates two ransom notes ("info.txt" and "info.hta" files). Unique is part of the Phobos ransomware family. We discovered it on VirusTotal (while checking this page for recently submitted malware

Wnprt.club Ads
Notification Spam

Wnprt.club Ads

While inspecting wnprt[.]club, our team learned that it has two purposes: to trick visitors into believing that their computers are infected (and purchasing antivirus software) and allowing it to show notifications. It runs the "McAfee - Your PC is infected with 5 viruses!" scam. We discovered wn

Analysissoftwarecentr.com Ads
Notification Spam

Analysissoftwarecentr.com Ads

Our researchers discovered the analysissoftwarecentr[.]com rogue webpage during a routine inspection of questionable websites. This page is designed to promote scams, push spam browser notifications, and redirects visitors to other (likely untrustworthy/malicious) sites. Users typically access an

RankBet Adware (Mac)
Mac Virus

RankBet Adware (Mac)

Our research team discovered the RankBet rogue app while inspecting new submissions to VirusTotal. After installing this piece of software onto our test system, we learned that it operates as adware. It is noteworthy that RankBet belongs to the AdLoad malware family. Adware stands for ad

S.O.V.A. Banking Trojan (Android)
Trojan

S.O.V.A. Banking Trojan (Android)

S.O.V.A. is the name of a banking trojan targeting Android devices. As its classification implies, this malware seeks to obtain baking and finance-related data. However, this trojan has a wide variety of functionalities and can be used to cause varied problems. S.O.V.A. is proliferated und

MMXXII Ransomware
Ransomware

MMXXII Ransomware

While inspecting new submissions to VirusTotal, our research team discovered the MMXXII ransomware. This malicious program is part of the Phobos ransomware family. After executing a sample of MMXXII on our test system, it began encrypting files and altering their filenames. The titles of the affe

CapraRAT Malware (Android)
Trojan

CapraRAT Malware (Android)

CapraRAT is the name of an Android remote access trojan (RAT), possibly a modified version of another (open-source) RAT called AndroRAT. It is known that CapraRAT is used by an advanced persistent threat group (ATP) called APT36 (also known as Earth Karkaddan). CapraRAT allows attackers to perform

Ourhugenews.com Ads
Notification Spam

Ourhugenews.com Ads

Ourhugenews[.]com is a rogue webpage discovered by our researchers during a routine investigation of suspicious sites. This page promotes browser notification spam and redirects visitors to other (likely unreliable/dangerous) websites. Users typically access such pages via redirects caused by site