Virus and Spyware Removal Guides, uninstall instructions

Beach Wallpaper Browser Hijacker

What kind of software is Beach Wallpaper?

Beach Wallpaper is a rogue extension that promises to display beach-themed browser wallpapers. After examining this piece of software, we determined that it is a browser hijacker. Beach Wallpaper modifies browser settings to promote (through redirects) the find.nmywebsrc.com fake search engine.

   
Crimson International Email Virus

What kind of email is "Crimson International"?

Our inspection of the "Crimson International" email revealed that it is fake. We determined that this letter is malspam. It attempts to deceive recipients into opening the attachment by presenting it as a document containing information concerning a potential order. This malicious file is designed to infect systems with the Agent Tesla RAT (Remote Access Trojan).

It must be emphasized that this spam mail is not associated with the actual Crimson International pharmaceutical company.

   
RetrievalBandwidth Adware (Mac)

What kind of application is RetrievalBandwidth?

RetrievalBandwidth is a rogue app that we discovered during a routine inspection of new submissions to the VirusTotal website. Our analysis revealed that this application is adware belonging to the AdLoad malware family. RetrievalBandwidth operates by delivering intrusive advert campaigns.

   
Screenshot Browser Hijacker

What kind of software is Screenshot?

Our research team discovered the Screenshot browser extension while inspecting questionable websites. This piece of software is presented as a tool that allows users to take screenshots easily, and it displays browser wallpapers.

After analyzing this extension, we learned that it makes changes to browser settings in order to endorse (through redirects) the find.psearchitnow.com fake search engine. Due to this behavior, the Screenshot extension is classed as a browser hijacker.

   
QuiteRAT Malware

What kind of malware is QuiteRAT?

QuiteRAT is a piece of malicious software categorized as a Remote Access Trojan (RAT). This program is designed to enable remote access/control over infected systems.

QuiteRAT was first spotted in early 2023 and has been since linked to the Lazarus Group – a threat actor backed by the state of North Korea. This RAT has been implemented in an attack against an essential Internet infrastructure provider in Europe.

   
ApteryxAustralis Malicious Extension

What kind of application is ApteryxAustralis?

After encountering a suspicious website, our research team stumbled upon the ApteryxAustralis application while testing a potentially harmful installer. This application has the potential to involve itself in deceptive practices. Notably, ApteryxAustralis introduces the "Managed by your organization" feature to Chrome browsers, alongside its capability to access diverse sets of data.

   
Giraffidae Malicious Extension

What kind of application is Giraffidae?

Our team came across the Giraffidae application during an investigation involving a suspicious website from which a malicious installer was downloaded. This application has the potential to carry out deceptive actions. Our analysis revealed that Giraffidae introduces the "Managed by your organization" feature to Chrome browsers and has the ability to access different types of data.

   
Retch Ransomware

What kind of malware is Retch?

Retch is a ransomware-type program that we discovered while investigating new file submissions to the VirusTotal website. This software is designed to encrypt data and demand payment for its decryption.

After we executed a sample of Retch on our testing system, it began encrypting files. Original filenames were appended with a ".Retch" extension. For example, a file initially titled "1.jpg" appeared as "1.jpg.Retch", "2.png" as "2.png.Retch", and so on for all of the locked files. Once this process was completed, a ransom note – "HOW TO RECOVER YOUR FILES.txt" – was created.

   
TroodonFormosus Malicious Extension

What kind of application is TroodonFormosus?

Our team discovered the TroodonFormosus app after running a malicious installer downloaded from a shady website. This app may engage in fraudulent activities. We found that TroodonFormosus adds the "Managed by your organization" feature to Chrome browsers. Also, it can read various data. Users who have this app added to their browsers should remove it as soon as possible.

   
Error Code: 0x80073b01 POP-UP Scam

What is "Error Code: 0x80073b01"?

During our examination of this website, we discovered its involvement in a technical support scam, wherein misleading pop-up messages are displayed to deceive visitors into believing their computers are compromised. It is essential to avoid such websites, as they are designed to deceive users into providing sensitive information, transferring money, or taking other actions.

   

Page 452 of 2372

<< Start < Prev 451 452 453 454 455 456 457 458 459 460 Next > End >>
About PCrisk

PCrisk is a cyber security portal, informing Internet users about the latest digital threats. Our content is provided by security experts and professional malware researchers. Read more about us.

Malware activity

Global malware activity level today:

Medium threat activity

Increased attack rate of infections detected within the last 24 hours.

Virus and malware removal

This page provides information on how to avoid infections by malware or viruses and is useful if your system suffers from common spyware and malware attacks.

Learn about malware removal