Virus and Spyware Removal Guides, uninstall instructions
What is HORSEMAGYAR ransomware?
While inspecting new submissions to VirusTotal, our research team found the HORSEMAGYAR ransomware.
We executed a sample of this malware on our test machine and learned that it encrypts data and renames the affected files. The filenames were altered according to this pattern - "[original_filename].[victim's_ID].[spanielearslook].likeoldboobs", e.g., a file initially titled "1.jpg" appeared as "1.jpg.[2da28fb1f2].[spanielearslook].likeoldboobs".
Once the encryption process was finished, a ransom-demanding message named "Horse.txt" was created on the desktop.
What kind of page is freshyearmarts[.]shop?
Freshyearmarts[.]shop is an untrustworthy page that runs a T-Mobile scam and asks for permission to show notifications. Our team has discovered this site while examining other pages of this kind (pages that use rogue advertising networks). Freshyearmarts[.]shop cannot be trusted and should never have permission to display notifications.
What kind of page is turnon-yourprotect[.]site?
While examining the turnon-yourprotect[.]site page, we found that it runs the "McAfee - Your PC is infected with 5 viruses!" scam and asks for permission to show untrustworthy notifications. We discovered this page during inspection of other shady pages that use rogue advertising networks.
What kind of malware is Ehehehx12?
Ehehehx12 is the name of ransomware that our team has discovered while examining malware samples submitted to the VirusTotal website. The purpose of Ehehehx12 is to encrypt files. Additionally, it renames files (by appending the ".Ehehehx12" extension to filenames) and creates the "HELP_DECRYPT_YOUR_FILES.txt" file containing a ransom note.
An example of how Ehehehx12 renames files: it changes "1.jpg" to "1.jpg.Ehehehx12", "2.png" to "2.png.Ehehehx12", "3.exe" to "3.exe.Ehehehx12", and so forth.
What kind of page is websecurityprograms[.]com?
Websecurityprograms[.]com is a rogue webpage that our research team discovered while inspecting untrustworthy sites. This page operates by hosting scams, promoting browser notification spam, and redirecting visitors to different (likely unreliable/malicious) websites.
Users typically enter pages like websecurityprograms[.]com through sites that use rogue advertising networks.
What is Research Alts?
Research Alts is the name of a rogue browser extension that our researchers found while inspecting dubious download websites. It is endorsed as a tool capable of providing additional search results when a site is down (unavailable) - specifically within the realm of interest for students and researchers. Our analysis of Research Alts revealed that it operates as adware.
What is Trins ransomware?
Trins is the name of a ransomware-type program that our research team discovered while looking through new submissions to VirusTotal.
We executed a sample of this ransomware on our test machine and learned that it encrypts files and appends their filenames with a ".trins" extension. For example, a file originally named "1.jpg" appeared as "1.jpg.trins", "2.png" as "2.png.trins", and so on for all of the affected files.
After the encryption process was finished, a ransom-demanding message - "RECOVERY.txt" - was dropped onto the desktop.
What kind of page is pcdefencerequired[.]com?
Pcdefencerequired[.]com shows deceptive content to trick visitors into believing that their computers are infected. Also, this page asks for permission to show untrustworthy notifications. Our team discovered pcdefencerequired[.]com while examining websites that use questionable advertising networks.
What kind of page is playgamego[.]xyz?
During a routine inspection of rogue webpages, our researchers discovered the playgamego[.]xyz rogue site. It is designed to promote browser notification spam and redirect visitors to other (likely untrustworthy/harmful) websites. Most users access sites like playgamego[.]xyz through redirects caused by pages that use rogue advertising networks.
What kind of website is news-voxodo[.]cc?
News-voxodo[.]cc is a deceptive website that we have discovered while examining other pages that use rogue advertising networks. After inspecting this page, we found that it displays deceptive content to trick visitors into agreeing to receive notifications. Also, it redirects to another shady website.
More Articles...
Page 789 of 2356
<< Start < Prev 781 782 783 784 785 786 787 788 789 790 Next > End >>