Virus and Spyware Removal Guides, uninstall instructions
![Thepositiveimpactnow.com Ads](/images/thumbnails/th-25053-thepositiveimpactnow-com-ads.jpg)
What is thepositiveimpactnow[.]com?
While examining thepositiveimpactnow[.]com, our team learned that this page is designed to lure visitors into allowing it to show notifications. Our other finding was that it redirects visitors to a similar deceptive website. We discovered thepositiveimpactnow[.]com while inspecting pages that use rogue advertising networks.
![Motivational Quotes Adware](/images/thumbnails/th-25052-motivational-quotes-adware.jpg)
What is Motivational Quotes?
While inspecting suspicious sites, our researchers found one promoting a browser extension called Motivational Quotes. It is endorsed as a tool that displays famous entrepreneur quotes on the Google homepage. However, our inspection of this extension revealed that it operates as adware. In other words, Motivational Quotes runs intrusive advertisement campaigns and collects private data.
![NoteTab - Save Your Thoughts Browser Hijacker](/images/thumbnails/th-25051-notetab-save-your-thoughts-browser-hijacker.jpg)
What kind of application is NoteTab - Save Your Thoughts?
While examining NoteTab - Save Your Thoughts, we found that it changes the settings of a web browser to promote find.unav-web.com, a fake search engine. Apps that behave like this are called browser hijackers. In most cases, browser hijackers are promoted and distributed using shady methods. We discovered NoteTab - Save Your Thoughts on a deceptive page.
![AllocateType Adware (Mac)](/images/thumbnails/th-25050-allocatetype-adware-mac.jpg)
What is AllocateType?
While inspecting new submissions to VirusTotal, our research team came upon an application named AllocateType. After analyzing it, we learned that it is an adware-type app belonging to the AdLoad malware family.
![ManagerUpdater Adware (Mac)](/images/thumbnails/th-25049-managerupdater-adware-mac.jpg)
What kind of application is ManagerUpdater?
Recently, our team discovered an advertising-supported application called ManagerUpdater. We classified ManagerUpdater as adware because it generates unwanted advertisements. We also found that this app can read sensitive information. In most cases, users download and install adware inadvertently due to the methods used to promote and distribute it.
![FBI Ransomware](/images/thumbnails/th-25048-fbi-ransomware.jpg)
What is FBI ransomware?
FBI is the name of a ransomware-type program. Malware within this classification is designed to encrypt data and demand payment for the decryption.
After we executed a sample of this ransomware on our test machine, it encrypted files and appended their filenames with a ".fbi" extension. For example, a file originally named "1.jpg" appeared as "1.jpg.fbi", "2.png" as "2.png.fbi", and so on for all of the compromised files.
Once this process was completed, FBI created ransom notes named "readme.txt", "LOCKEDBYFBI.hta", and "decryptfiles.html" which were all empty. Only the fullscreen displayed by this malware was operational and contained an actual message that was also audibly read out by a bot.
At the time of writing, FBI ransomware is decryptable - the decryption key is "fbi" (without the quotation marks).
![Pohj Ransomware](/images/thumbnails/th-25047-pohj-ransomware.jpg)
What kind of malware is Pohj?
Pohj is ransomware that belongs to the Djvu family (one of the most widespread ransomware families). We discovered this ransomware while examining malware samples submitted to VirusTotal. Pohj encrypts data, appends the ".pohj" extension to filenames, and drops the "_readme.txt" file containing a ransom note.
An example of how Pohj renames the encrypted files: it changes "1.jpg" to "1.jpg.pohj", "2.png" to "2.png.pohj", "3.exe" to "3.exe.pohj", and so forth.
![Powz Ransomware](/images/thumbnails/th-25046-powz-ransomware.jpg)
What kind of malware is Powz?
Powz is ransomware designed to prevent victims from opening their files by encrypting them. Our team discovered it while checking the VirusTotal page for recently submitted malware samples. We also found that Powz is part of the Djvu ransomware family, appends the ".powz" extension to filenames, and creates a ransom note (the "_readme.txt" file).
An example of how Powz ransomware renames encrypted files: it renames "1.jpg" to "1.jpg.powz", "2.png" to "2.png.powz", "3.exe" to "3.exe.powz", and so forth.
![Headcaptcha.live Ads](/images/thumbnails/th-25045-headcaptcha-live-ads.jpg)
What kind of page is headcaptcha[.]live?
Our research discovered the headcaptcha[.]live page while checking out suspicious websites. This rogue webpage pushes browser notification spam and redirects visitors to different (likely deceptive/malicious) sites. Users typically enter headcaptcha[.]live and pages akin it - through redirects caused by websites that use rogue advertising networks.
![Space Tab Browser Hijacker](/images/thumbnails/th-25044-space-tab-browser-hijacker.jpg)
What is Space Tab?
Our researchers discovered the Space Tab browser extension while inspecting deceptive websites. After analyzing this extension, we learned that it operates as a browser hijacker. Space Tab makes changes to browser settings in order to cause redirects to the find.gsearchwithus.com fake search engine.
More Articles...
Page 690 of 2359
<< Start < Prev 681 682 683 684 685 686 687 688 689 690 Next > End >>