Virus and Spyware Removal Guides, uninstall instructions

Top Movies Links | Digital Content Online Browser Hijacker

What kind of app is Top Movies Links | Digital Content Online?

We have downloaded and tested the Top Movies Links | Digital Content Online app and found that it has the qualities of a browser hijacker. It promotes a fake search engine (the topmovieslinks.com address) by changing the settings of a web browser. We have discovered this browser-hijacking app while examining deceptive sites.

   
PickMySearch Browser Hijacker

What kind of application is PickMySearch?

Our team has discovered the PickMySearch application while checking deceptive websites. We have tested this app and found that it is a browser hijacker that promotes a fake search engine (pickmysearch.com) by changing the setting of the affected browser. Apps of this type cannot be trusted.

   
News-caloto.cc Ads

What kind of page is news-caloto[.]cc?

News-caloto[.]cc is a rogue website designed to push browser notification spam. It can also redirect visitors to other dubious/malicious webpages.

Our researchers discovered news-caloto[.]cc while analyzing sites that use rogue advertising networks. Redirects caused by the aforementioned pages is how most user access news-caloto[.]cc and similar websites.

   
Bkgwmu Ransomware

What is Bkgwmu ransomware?

Bkgwmu is a ransomware-type program our researchers discovered when inspecting new submissions on VirusTotal. We determined that his malicious program belongs to the Snatch ransomware family.

On our test machine, Bkgwmu encrypted files and appended their filenames with a ".bkgwmu" extension. To elaborate, a file initially titled "1.jpg" appeared as "1.jpg.bkgwmu", "2.jpg" as "2.jpg.bkgwmu", etc.

Once the encryption process was completed, this ransomware dropped a ransom note named "HOW TO RESTORE YOUR FILES.TXT" onto the desktop. Based on this message, we can conclude that Bkgwmu targets companies rather than home users.

   
Routes Adware

What is Routes adware?

Discovered by our researchers while inspecting software "cracking" websites, Routes is the name of an adware-type application. Advertising-supported software (adware) is designed to run intrusive advertisement campaigns. We have also observed Routes being installed alongside a fake Google Translate browser extension.

   
Financesurvey24.space Ads

What kind of page is financesurvey24[.]space?

During a routine inspection of rogue websites, our research team discovered the financesurvey24[.]space site. This page loads dubious content, promotes browser notification spam, and redirects visitors to other unreliable/harmful webpages. Most users access sites like financesurvey24[.]space via redirects caused by pages using rogue advertising networks.

   
Remain Dark Browser Hijacker

What kind of application is remain dark?

We have discovered the remain dark browser extension while examining deceptive websites. After downloading and testing the app, we learned that it hijacks a web browser by changing certain settings to 87nzaa.com (a fake search engine). It is advertised as an app providing a dark mode for web browsers.

   
TargetCompany Ransomware

What is TargetCompany ransomware?

TargetCompany is a ransomware-type program that we have analyzed and researched. It is leveraged against companies rather than home users. We have also analyzed the following programs that belong to this ransomware family - Architek, Mallox, Tohnichi, Herrco, and Newexploit.

This ransomware appends the names of encrypted files with extensions that are the affected company's name or relate to it. Observed examples include - ".artiis", ".brg", ".mallox", ".architek", ".tohnichi", ".herrco", ".consultransom", ".avast", and others. After this malware completes the encryption, it creates a ransom note titled "How to decrypt files.txt".

TargetCompany is a decryptable ransomware. Avast has released free decryptors (32bit and 64bit) for it; the decryption instructions can be found in an article on decoded.avast.io website.

   
Your Email Account Will Be Disconnected Email Scam

What is "Your eMail account will be disconnected" email?

The "Your eMail account will be disconnected" email is a new find by our research team. Having inspected this letter, we determined that it is a phishing email. It targets recipients' email credentials with false claims about their accounts' impending suspension.

   
Closing Of Email Address Notice ! Email Scam

What is "Closing Of Email Address Notice !" email scam?

We have examined this email and concluded that scammers behind it attempt to trick recipients into providing their email account login credentials. Scammers disguised the email as a letter regarding email account deactivation/request for account deactivation.

   

Page 881 of 2354

<< Start < Prev 881 882 883 884 885 886 887 888 889 890 Next > End >>
About PCrisk

PCrisk is a cyber security portal, informing Internet users about the latest digital threats. Our content is provided by security experts and professional malware researchers. Read more about us.

Malware activity

Global malware activity level today:

Medium threat activity

Increased attack rate of infections detected within the last 24 hours.

Virus and malware removal

This page provides information on how to avoid infections by malware or viruses and is useful if your system suffers from common spyware and malware attacks.

Learn about malware removal