Virus and Spyware Removal Guides, uninstall instructions

Websites Drawer Adware

What is Websites Drawer?

While looking through deceptive sites, our researchers discovered the Websites Drawer browser extension. It is promoted as a tool that allows users to draw and make captions on visited webpages. However, our analysis revealed that this extension operates as advertising-supported software (adware).

   
FindIt-All Browser Hijacker

What is FindIt-All?

FindIt-All is a browser extension that our research team discovered while checking out suspicious software-promoting websites. Our analysis of this extension revealed that it operates as a browser hijacker. FindIt-All changes browser settings to promote the find.findit-all.com fake search engine.

   
ZEUSSEC1337 Ransomware

What is ZEUSSEC1337 ransomware?

ZEUSSEC1337 is a ransomware-type program that we discovered while inspecting new submissions to VirusTotal. This malicious program is part of the Chaos ransomware family.

On our testing system, ZEUSSEC1337 encrypted files and appended filenames with an extension consisting of four random characters. For example, a file titled "1.jpg" appeared as "1.jpg.qcj9", "2.png" as "2.png.7tml", and so on for all of the affected files.

Another variant of ZEUSSEC1337 ransomware appends ".zeussec1337" extension.

Once the encryption process was concluded, ZEUSSEC1337 changed the desktop wallpaper and created a text file named "Bacabangtxt". Both the wallpaper and text file contain ransom notes.

   
Trippy Circles Browser Hijacker

What is Trippy Circles?

While inspecting rogue websites, our researchers discovered one endorsing the Trippy Circles browser extension. It promises to display animations on new browser tabs. However, this software also operates as a browser hijacker. Trippy Circles alters browser settings to promote the trippycircles.net fake search engine. Additionally, this extension collects sensitive browsing-related data.

   
Cypher RAT (Android)

What kind of malware is Cypher?

Cypher is the name of a remote administration Trojan (RAT) targeting Android users. It allows threat actors to monitor and control infected devices (perform various actions on infected devices). Cypher's creators offer three subscription plans: $100 per month, $200 for three months, and $400 for a lifetime subscription.

   
AlphaExplorer Adware (Mac)

What is AlphaExplorer?

While checking out new submissions to VirusTotal, our researchers discovered the AlphaExplorer rogue app. This piece of software operates as adware. Additionally, it is worth mentioning that AlphaExplorer is part of the AdLoad malware family.

   
Alldefensepc.com Ads

What is alldefensepc[.]com ?

Our team examined alldefensepc[.]com and found that the purpose of this deceptive site is to trick visitors into purchasing legitimate antivirus software. Additionally, alldefensepc[.]com asks for permission to show notifications. We discovered alldefensepc[.]com while inspecting pages that use rogue advertising networks.

   
Eyedocx Ransomware

What is Eyedocx ransomware?

Our researchers discovered the Eyedocx ransomware-type program while inspecting new submissions to VirusTotal. Malware of this kind operates by encrypting data and demanding payment for the decryption keys/tools.

When we executed a sample of Eyedocx on our test system, it encrypted files and appended their filenames with a ".encrypted" extension. For example, a file initially named "1.jpg" appeared as "1.jpg.encrypted", "2.png" as "2.png.encrypted", etc. Afterwards, a text file - "readme.infomation" - containing the ransom note was created.

   
3D Tree Browser Hijacker

What kind of application is 3D Tree?

While analyzing the 3D Tree application, we found that it is a browser extension designed to hijack a web browser. This app promotes a fake search engine (search.3dtree.net) by modifying the browser settings. Additionally, 3D Tree can read and change bookmarks and data on 3dtree.net. We discovered the 3D Tree browser hijacker on a deceptive web page.

   
Board Approved Payroll Email Scam

What kind of email is "Board Approved Payroll"?

Our inspection of the "Board Approved Payroll" email revealed that it is spam operating as a phishing scam. It is presented as a notification regarding a shared document containing salary payments. The link to the fake file leads to a phishing site that requests users to provide their email account log-in credentials.

   

Page 669 of 2360

<< Start < Prev 661 662 663 664 665 666 667 668 669 670 Next > End >>
About PCrisk

PCrisk is a cyber security portal, informing Internet users about the latest digital threats. Our content is provided by security experts and professional malware researchers. Read more about us.

Malware activity

Global malware activity level today:

Medium threat activity

Increased attack rate of infections detected within the last 24 hours.

Virus and malware removal

This page provides information on how to avoid infections by malware or viruses and is useful if your system suffers from common spyware and malware attacks.

Learn about malware removal