Step-by-Step Malware Removal Instructions

DHL - A Parcel Collection Has Been Registered Email Scam
Phishing/Scam

DHL - A Parcel Collection Has Been Registered Email Scam

Our analysis of the email revealed that it is a phishing email. It is crafted to appear as a notification from DHL (a multinational logistics company). The goal of this scam is to lure unsuspecting recipients into opening a fake web page and disclosing personal information. Such emails should be i

Norton Subscription Payment Has Failed POP-UP Scam
Phishing/Scam

Norton Subscription Payment Has Failed POP-UP Scam

"Norton Subscription Payment Has Failed" is a scam that our researchers found during a routine inspection of suspect websites. It warns users that their anti-virus subscription has expired and cannot be renewed. It must be emphasized that these claims are false, and this scam is not associated wi

Login-tab.com Redirect
Browser Hijacker

Login-tab.com Redirect

While analyzing the "Login Tab - Faster access to favorite sites" browser hijacker, our researchers discovered the login-tab.com webpage. It is a fake search engine that cannot provide search results and redirects to legitimate Internet websites. Browser hijackers promote sites of this kind (via

REDKAW Ransomware
Ransomware

REDKAW Ransomware

REDKAW is ransomware designed to encrypt data and append its extension (".redkaw") to files. For instance, it changes "1.jpg" to "1.jpg.redkaw", "2.png" to "2.png.redkaw", and so forth. Also, REDKAW provides a ransom note, "HOW-TO-FIX.txt". The note includes contact and payment information. Sc

Risotoska.co.in Ads
Notification Spam

Risotoska.co.in Ads

Our research team discovered the risotoska.co[.]in webpage while inspecting suspect sites. After examining this page, we learned that it endorses browser notification spam and redirects users to different (likely untrustworthy/malicious) sites. The majority of visitors to risotoska.co[.]in and si

Hitler_77777 Ransomware
Ransomware

Hitler_77777 Ransomware

Our team discovered Hitler_77777 while analyzing malware samples uploaded to VirusTotal. This ransomware is identical to TRUST FILES. It encrypts files and modifies filenames. Hitler_77777 appends the victim's ID, a Telegram ID, and its extension (four ransom characters) to files. Also, Hitler_77

FastFix Adware (Mac)
Mac Virus

FastFix Adware (Mac)

Our analysis revealed that FastFix exhibits adware-like behavior. Once active, it generates intrusive and unwanted advertisements. Users should avoid installing FastFix and similar apps. In addition to displaying ads, FastFix may also collect user data and cause other issues. FastFix can

We Are Having Trouble With Firewall POP-UP Scam
Phishing/Scam

We Are Having Trouble With Firewall POP-UP Scam

Our researchers discovered the "We Are Having Trouble With Firewall" scam while investigating dubious websites. It is a technical support scam that aims to trick victims into calling fake support lines by making bogus claims concerning their device security. It must be emphasized that the informa

Revenge Of Heisenberg Ransomware
Ransomware

Revenge Of Heisenberg Ransomware

Revenge Of Heisenberg is a ransomware based on Chaos, which our researchers discovered during a routine inspection of new file submissions to the VirusTotal platform. Ransomware is designed to encrypt files and demand payment for the decryption. There are two variants of Revenge Of Heisenberg, an

Richleads.top Ads
Notification Spam

Richleads.top Ads

Richleads[.]top is a rogue webpage discovered by our researchers while investigating dubious sites. After inspecting this page, we learned that it promotes browser notification spam and produces redirects to other (likely untrustworthy/hazardous) websites. Most users enter webpages like richleads[