GolangGhost RAT
A recent surge in job-offer phishing campaigns targeting macOS users has revealed GolangGhost, a Remote Access Trojan (RAT) crafted in…
Basta (Makop) Ransomware
A recent incident showcased a mid-sized enterprise crippled by unexpected file encryption: documents, images, and databases rendered inaccessible overnight. This…
Shopping Helper Extension
A recent case showed users trapped in endless redirects to unfamiliar sites and bombarded with deceptive pop-ups. When “Shopping Helper…
Finished Updating Mail Server Scam
A recent case on June 18, 2025, uncovered a phishing campaign masquerading as a routine “mail server update” notification. In…
Medidmakingbythe.org Ads
A recent case showed a user’s browser hijacked by relentless “Medidmakingbythe.org” ads masquerading as health alerts. Each click unleashed new…
OttPzx.Co.In Ads
A recent incident illustrated how effortlessly OttPzx.Co.In Ads infiltrated a typical user’s browser. One moment, the victim browsed news sites;…
Ads by ers-adguard.pro
A recent surge in bogus push-notification prompts has ensnared unsuspecting users in ers-adguard.pro’s clickbait trap. Imagine browsing a legitimate site…
Conti Ransomware
A whistleblower leak in May 2025 exposed senior Conti operators and sent the group spiraling into dissolution. Yet Conti’s legacy—ransomware-as-a-service…
Fastguard.pro
A recent incident highlighted unsuspecting users repeatedly redirected to suspicious domains and bombarded with “Click Allow to continue” prompts, all…
Ads by kkheo.co.in
Ads by kkheo.co.in is a browser notification spam scam that leverages deceptive pop-ups (e.g., fake CAPTCHAs or “Microsoft Edge Security Check”) to trick…
MrMan.com Redirect
MrMan.com is an adult content site launched in 2013 that features male nudity content from mainstream media. While it’s not…
Sakura RAT
Sakura RAT is a Java-based Remote Access Trojan (RAT) that enables attackers to stealthily control infected systems. While typically considered…
TOSHI Airdrop Scam
The TOSHI Airdrop Scam is a sophisticated cryptocurrency phishing scheme that impersonates the official Toshi memecoin project. It's a web-based crypto drainer…
The “Overdraft Payment” Email Scam
The “Overdraft Payment” email scam is a classic advance‑fee phishing scam, where attackers pose as international bank representatives offering you a share of…
Vetraxluna.co.in
Vetraxluna.coin is a deceptive webpage that tricks users into enabling browser notifications, leading to persistent and unwanted pop-up ads. These…
“Intuit QuickBooks Account Details” Email Scam
Threat Overview FeatureDetailsThreat typePhishing scam, email-based social engineeringAssociated email addressesDisguised, spoofed addresses pretending to be from QuickBooks/IntuitDetection namesTypically flagged as…
API Cactus‑Search.com Redirect
API Cactus‑Search.com is a browser hijacker that forcefully redirects your web searches through cactus‑search.com or api.cactus‑search.com. This potentially unwanted program (PUP)…
Sorillus RAT
Sorillus RAT is a sophisticated Java-based remote access trojan (RAT) marketed as malware‑as‑a‑service. It targets Windows, macOS, and Linux systems,…
SafeWatch Unwanted Application
SafeWatch is classified as a Potentially Unwanted Application (PUA)—often bundled with freeware or spread via deceptive pop-ups. While not overtly malicious,…
DataLeak Ransomware
DataLeak is a potent ransomware threat from the MedusaLocker family, discovered June 16, 2025. It combines file encryption with data exfiltration,…
AMERILIFE Ransomware
AMERILIFE is a recently identified ransomware strain that encrypts victims’ files, appending a .ameriwasted extension. Victims are then coerced into contacting hackers…
The “Aetna Sent You A Secure Message” Email Scam
The “Aetna Sent You A Secure Message” email scam is a phishing campaign designed to trick users into revealing their…
Chewbacca Ransomware
Chewbacca is a ransomware strain that encrypts significant files—like documents, photos, databases—with a unique extension and demands a ransom for decryption. It…
Fumacrom.com Pop‑ups
Fumacrom.com is a deceptive browser hijacker that tricks users into enabling push notifications. Once permitted, it sends endless pop‑ups that…
Waremis.co.in Pop‑ups
Waremis.co.in is a shady website used to push unsolicited browser notifications and intrusive pop-ups. It's classified as a browser hijacker/adware…
BrowserVenom
BrowserVenom is a sophisticated form of trojan proxyware, recently uncovered spreading via fake DeepSeek-R1 installers and malvertising campaigns. Its primary function…
The “Messages Failed Report” Email Scam
The “Messages Failed Report” scam is a deceptive email campaign targeting recipients by claiming that their messages failed to be…
John Collins / Investment Fund Scam
Cybercriminals posing as investment fund representatives are targeting unsuspecting victims with phishing schemes promising massive payouts. One notable variant, the “John Collins/Investment…
OverallTermsReserve Adware
OverallTermsReserve is a macOS adware and browser hijacker that infiltrates your system often bundled with seemingly harmless freeware or shareware.…
ExpandedSection Adware
ExpandedSection is a macOS adware and browser hijacker that silently installs LaunchAgents, LaunchDaemons, and browser extensions to inject aggressive ads,…
Microsoft WebDAV Zero‑Day Exploit (CVE‑2025‑33053)
A severe remote code execution (RCE) vulnerability in Windows WebDAV—CVE‑2025‑33053—enables attackers to control file paths or names and execute code…
Limipomplo.com Pop‑Ups
Limipomplo.com is a misleading domain that tricks users into enabling browser notifications. By disguising itself with fake CAPTCHA checks, it…
Spicenous.com
Spicenous.com is part of a browser hijacker campaign that uses fake prompts to trick users into subscribing to push notifications.…
Deal With Claim Sign Scam
The Claim Sign scam is part of a growing wave of crypto wallet drainer campaigns that impersonate real blockchain services. In this case, scammers…
Polyhedrical.app
Polyhedrical.app is a piece of adware targeting macOS users. It belongs to the Pirrit adware family—known for manipulating browser behavior,…
Ethereum ETH Rewards Scam
The Ethereum ETH Rewards Scam is a dangerous online fraud campaign exploiting cryptocurrency users by offering bogus ETH reward incentives. Victims are…
Backups Airmail CC Ransomware
Backups Airmail CC Ransomware is a highly dangerous computer virus from the widespread STOP/DJVU ransomware family. It infiltrates systems through…
AdsFreshClick.top Ads
If your screen is being bombarded by pop-ups from adsfreshclick.top, you're dealing with a browser-based adware threat. This deceptive domain leverages…
Retobeassilentasaf.org Browser Ads
Retobeassilentasaf.org is a rogue website designed to deliver unwanted browser notifications by tricking users into granting permissions. This threat operates…
Adicea.app
Threat Summary FieldDetailsThreat typeAdware (Pirrit family)Associated domainNot specifiedDetection namesAvast (MacOS:Agent‑SD ), Combo Cleaner (Gen:Variant.Adware.MAC.Pirrit.4), ESET‑NOD32 (OSX/Adware.Pirrit.CF), Kaspersky (Not‑a‑virus:HEUR:AdWare.OSX.Pirrit.ac)Symptoms of infectionSudden…
Copyroticirung.co.in Ads
Copyroticirung.co.in ads represent a form of highly intrusive browser-based adware. By prompting unsuspecting users to click “Allow” on deceptive pages,…
Searcherbright.com
The Searcherbright.com redirect is a browser hijacker that covertly alters browser settings to force unwanted redirects, usually to promote fake search engines. This threat…
Gastaldo.app
Gastaldo.app is macOS adware belonging to the aggressive Pirrit family. Once installed, it floods browsers with unsolicited pop-ups, banners, coupons…
WalletConnect Token (WCT) Airdrop Scam
Threat Overview The WalletConnect Token (WCT) Airdrop Scam is a phishing attack posing as a legitimate WalletConnect and Web3Inbox giveaway. It lures…
Hulondor.co.in
Hulondor.co.in is not a traditional computer virus—it operates as a browser hijacker and adware component. Once users unknowingly allow its…
CryptoLock2025
CryptoLock2025 is the newest iteration of file-encrypting ransomware sweeping corporate networks and individual PCs alike. Once inside a victim’s system,…
Hedera HDR Airdrop Scam
The Hedera HDR Airdrop Scam is a cryptocurrency phishing fraud targeting users of the Hedera Hashgraph network. Victims receive unsolicited NFT or…
Mastablegary.com Ads
Threat Overview AttributeDetailsThreat typeAdware / Browser hijacker (notification spam)Associated domainmastablegary.com (includes subdomains like usa2sykt5m.mastablegary.com)Detection namesNot widely flagged by antivirus tools yetSymptoms of…
SafeLocker (8xUsq62/SafeLocker)
SafeLocker, also known as 8xUsq62, is a recent strain of file-encrypting ransomware discovered in June 2025. It stealthily locks victims'…
DocuSign – Signature Needed Email Scam
Threat Overview Threat Details Table AspectDetailsThreat typePhishing email / Social engineeringAssociated email address(es)Spoofed DocuSign addresses (e.g., dse_NA4@docusign.net)Detection namesDocuSign – Signature Needed…

