Virus and Spyware Removal Guides, uninstall instructions

World Lottery Email Scam

What kind of scam is "World Lottery" email scam?

We have inspected this email and learned that it is a lottery scam email. It is a type of fraud where scammers send emails to unsuspecting individuals, claiming that they have won a large sum of money in a lottery or sweepstakes. These emails typically instruct recipients to respond with personal information.

   
Snwkz Ransomware

What kind of malware is Snwkz?

Snwkz is ransomware that our team discovered while examining samples submitted to the VirusTotal website. The purpose of Snwkz is to encrypt files. Also, it creates a ransom note (a file named "[random_string]_HOW_TO_DECRYPT.txt") and renames files by appending a string of random characters and the ".snwkz" extension to filenames.

We found that Snwkz is part of the Hive ransomware family. An example of how it modifies filenames: it changes "1.jpg" to "1.jpg.5GidBrZG88lGZxe-YMbrNscpw4h9e6-NISHVchGL8Ov_qHLbTXn2TV00.snwkz" "2.png" to "2.png.5GidBrZG88lGZxe-YMbrNscpw4h9e6-NISHVchGL8Ov_qHLbTXn2TV00.snwkz", and so forth.

   
Search.tablicious.com Redirect

What is search.tablicious.com?

While investigating rogue software, we discovered the search.tablicious.com fake search engine. These illegitimate websites usually cannot generate search results and redirect to genuine search engines; this is true of search.tablicious.com as well.

Sites of this kind are typically promoted (via redirects) by browser hijackers. Furthermore, fake search engines and the software endorsing them – tend to spy on users' browsing activity.

   
Productprogramm2.com Ads

What kind of page is productprogramm2[.]com?

While investigating untrustworthy websites, our research team discovered the productprogramm2[.]com rogue page. It is designed to promote dubious/malicious software and browser notifications spam. Furthermore, this webpage can redirect visitors to different (likely unreliable/dangerous) sites.

Users most commonly access pages like productprogramm2[.]com via redirects caused by websites that employ rogue advertising networks.

   
Roghe Ransomware

What is Roghe ransomware?

Roghe is the name of a ransomware-type program. Malware classed as ransomware operates by encrypting data in order to demand ransoms for its decryption.

After we executed a sample of Roghe on our test machine, we learned that it appends encrypted files with a ".enc" extension. For example, a file originally named "1.jpg" appeared as "1.jpg.enc", "2.png" as "2.png.enc", and so on for all of the affected files.

Once this process was concluded, the ransomware changed the desktop wallpaper and displayed a pop-up window containing the ransom note.

   
Suspicious Login Attempt On Your Windows Computer Email Scam

What kind of email is "Suspicious Login Attempt On Your Windows Computer"?

After inspecting the "Suspicious Login Attempt On Your Windows Computer" email, we determined that it is spam operating as a technical support scam.

The letter is presented as an alert from Microsoft/ Windows Security Center. It states that a suspect sign-in attempt has been made to the recipient's computer. The fake email urges the recipient to call the provided helpline in order to address this threat.

   
Google (Chaos) Ransomware

What kind of malware is Google?

While analyzing malware samples submitted to the VirusTotal website, we discovered a ransomware variant dubbed Google. We found that Google ransomware belongs to the Chaos ransomware family. The purpose of this malware is to encrypt files. In addition to encrypting files, Google ransomware drops the "read_it.txt" file, a ransom note.

Also, it appends the ".google" extension to filenames. For instance, it renames "1.jpg" to "1.jpg.google", "2.png" to "2.png.google", and so forth. It is important to note that Google company is not associated with this ransomware.

   
Account Will Be Terminated Email Scam

What kind of email is "Account Will Be Terminated"?

Our analysis of the "Account Will Be Terminated" email revealed that it is spam. This fake letter claims that the recipient's email account will be closed – unless it is upgraded.

When the user attempts to update their account, the link in the letter redirects them to a phishing website. This site mimics the recipient's email account sign-in page and records the entered credentials.

   
Aura Antivirus Protection POP-UP Scam

What kind of site runs the "Aura Antivirus Protection" pop-up scam?

Upon inspection, it has been discovered that this website displays deceptive messages, such as fake warnings, which falsely claim that a computer is infected and that antivirus software is unregistered. These messages are entirely fraudulent and should not be trusted.

Aura was made aware of misleading, fear-mongering tactics being used by an affiliate marketer. The company neither issued nor approved these tactics.

   
Likerus.click Ads

What kind of page is likerus[.]click?

Likerus[.]click is an untrustworthy page that displays deceptive content and wants to send notifications. Our team discovered likerus[.]click while examining websites that use rogue advertising networks. Users do not access sites like likerus[.]click intentionally.

   

Page 590 of 2362

<< Start < Prev 581 582 583 584 585 586 587 588 589 590 Next > End >>
About PCrisk

PCrisk is a cyber security portal, informing Internet users about the latest digital threats. Our content is provided by security experts and professional malware researchers. Read more about us.

Malware activity

Global malware activity level today:

Medium threat activity

Increased attack rate of infections detected within the last 24 hours.

Virus and malware removal

This page provides information on how to avoid infections by malware or viruses and is useful if your system suffers from common spyware and malware attacks.

Learn about malware removal