GameLauncher

Posted: October 14, 2016 | Category: Potentially Unwanted Programs (PUPs)
GameLauncher is a checkers game that security experts have classified as a Potentially Unwanted Program (PUP). This application may often be found in low-quality software bundles that aim to convince users to install software they might not need. The bundles that include GameLauncher also may use misleading tricks or confusing installation instructions to increase the chances that users will accept to install GameLauncher on their computers unknowingly. Although GameLauncher is not a...

Search.yourtelevisioncenter.com

Posted: October 14, 2016 | Category: Browser Hijackers
The Your Television Center is a Potentially Unwanted Program (PUP) whose installation may require users to agree to have their default new tab page changed to a search engine linked to the Safer Browser line of low-quality search engines. Some of the URLs that the Your Television Center may set as the default new tab page of its users are free and include Yourtelevisioncenter.com and search.yourtelevisioncenter.com. Both of these websites are safe to use, and their search features are...

Exotic Squad Ransomware

Posted: October 13, 2016 | Category: Ransomware
The Exotic Squad Ransomware is a Trojan that encrypts your PC's files, targeting widely-used formats like JPEG or MP#, and displays a message demanding ransom money for restoring them. Since the Exotic Squad Ransomware includes the threat of deleting additional content or interfering with security software, malware analysts encourage disabling this threat as soon as possible. Use standard recovery procedures before running anti-malware tools able to delete the Exotic Squad Ransomware, and...

Trojan.Encoder.6491

Posted: October 13, 2016 | Category: Trojans
The Trojan.Encoder.6491 is the first ransomware written in Go, a programming language developed and maintained by Google. Naturally, the Go language is not meant to be used for harmful purposes nor should its name be associated with threats. However, con artists have decided to explore this new field by developing and releasing the Trojan.Encoder.6491, a piece of crypto threat that uses the AES-256 encryption to lock over 140 different types of files found on the computers of its victims....

!XTPLOCK5.0 File Extension' Ransomware

Posted: October 13, 2016 | Category: Ransomware
The '!XTPLOCK5.0 File Extension' Ransomware is a Trojan that encrypts your files while erasing any local backups that could restore them from their enciphered state. Victims are subjected to ransom demands via Bitcoins, after receiving the '!XTPLOCK5.0 File Extension' Ransomware's were the con artists claim that they'll provide a decryptor. Because of the high failure rates in these 'deals,' malware experts advise using anti-malware protection for removing the '!XTPLOCK5.0 File Extension'...

Cerber 4.0 Ransomware

Posted: October 13, 2016 | Category: Ransomware
The Cerber 4.0 Ransomware is an update to the Cerber Ransomware family that expands this threat's capacity for encrypting files, as well as changes other, aesthetic details of its ransom-based operation. Malware researchers can confirm that the Cerber 4.0 Ransomware's primary distribution models are using in-browser exploits that con artists are delivering through compromised websites. Since there is no working decryptor for this threat, PC owners should use anti-malware protection to find or...

InspiringBackgrounds

Posted: October 13, 2016 | Category: Possibly Unwanted Program
InspiringBackgrounds is a Potentially Unwanted Program (PUP) developed and published by Mindspark Interactive Network. This software offers users the ability to customize their new tab page and search engine by choosing from a wide variety of desktop backgrounds. The extension also allows users to get a random background on a regular basis, therefore making their new tab page a bit more entertaining. However, users who wish to install the InspiringBackgrounds Web browser extensions are asked...

NCrypt Ransomware

Posted: October 12, 2016 | Category: Ransomware
The NCrypt Ransomware is a threat that infects computers and then uses the AES-256 encryption to encrypt a large number of files stored on the infected machine. Apart from encrypting their contents, the NCrypt Ransomware also appends the '.NCRYPT' extension to the name of each encrypted file. When the NCrypt Ransomware is finished encrypting and renaming files, it proceeds to the last stage of the attack which drops a file called '_FILE_RETRIEVAL_INSTRUCTIONS.HTML' on the victim's computer....

Venis Ransomware

Posted: October 12, 2016 | Category: Ransomware
The Venis Ransomware is a piece of file encryption threat whose author is attempting to spread as a fake decryption tool for the Cerber Ransomware . An even more peculiar fact is that the Venis Ransomware doesn't appear to be an active threat at the moment. When it infects a computer, it doesn't do anything to encrypt the user's data but, however, it does drop a ransom note which contains some general information about the infection, as well as payment instructions. The Venis Ransomware's...

Deadly Ransomware

Posted: October 12, 2016 | Category: Ransomware
It is not uncommon for ransomware authors to release several different variants of their threatening applications. This may be the exact case with the Deadly Ransomware, a variant that seems to be programmed to start encrypting files in 2017. This may mean that the Deadly Ransomware variant will stay dormant on infected computers, and it will only start executing its harmful process after New Year's Eve. There's no information why the Deadly Ransomware's operator has decided to program his...

BrowsePlus

Posted: October 11, 2016 | Category: Adware
BrowsePlus is an adware extension whose website claims to be a useful utility that can provide users with information about the best deals available online. Apart from offering available deals, BrowsePlus also may display details about current promotions, coupon codes, and other information that may help users save money while online shopping. Overall, if you trust everything you see on BrowsePlus' official website, you may leave with the impression that this is a one-of-a-kind utility that...

Kostya Ransomware

Posted: October 11, 2016 | Category: Ransomware
The Kostya Ransomware is a data encryptor Trojan that uses its encoding attacks for extorting money from the PC's owner. Like similar threats, the Kostya Ransomware infections are recognizable by symptoms including high-visibility ransom messages and being unable to open any encoded content. If you don't use anti-malware tools to terminate or delete the Kostya Ransomware preemptively, your best recourse for data restoration is most likely in restoring from a backup, rather than paying the...

APT Ransomware

Posted: October 10, 2016 | Category: Ransomware
APT Ransomware has been discovered to be a malicious parasite that leverages the techniques in APT virus distribution that may be supported through Chinese government-supported threat intrusions. Much like other well-known threats that encrypt data on an infected PC, APT Ransomware can do such but never release the proper decryption key. The difference in APT Ransomware not making a decryption key available puts it in a category nearly on its own where its ransom demands are virtually useless...

Mysecuresearch.net

Posted: October 10, 2016 | Category: Browser Hijackers
Mysecuresearch.net is a search engine associated with the MySecureSearch browser extension published by ClientConnect LTD. The Mysecuresearch.net page and the browser extension linked to it are not classified as unsafe, but they might not deliver the best browsing experience to end-users. For example, Mysecuresearch.net may be presented as a search engine that provides users with access to advanced search utilities that can help them find better content. However, Mysecuresearch.net is not a...

GeoByPass

Posted: October 10, 2016 | Category: Adware
GeoByPass is an adware application that claims to provide users with the ability to provide them with unlimited access to online services and websites such as Netflix, Spotify, Hulu, etc. The reason why some people might be interested in using such an application is that some ISPs, employers, schools, and governments might prevent users from accessing particular services such as the ones listed above. GeoByPass achieves its result by modifying the computer's DNS settings, therefore rerouting...

'Virus Code 9UWXX400D' Pop-Ups

Posted: October 10, 2016 | Category: Browser Hijackers
The 'Virus Code 9UWXX400D' pop-ups are corrupted messages that may appear in the user's Web browser and claim that the computer is infected with threats. These pop-ups may use misleading statements, false virus alerts, and other suspicious tricks whose sole purpose is to convince the users that they are in dire need of professional technical support services. Not so tech-savvy users who are exposed to these pop-ups may fall for their tricks and believe that their computers are, in fact,...

Comrade Circle Ransomware

Posted: October 10, 2016 | Category: Ransomware
The Comrade Circle Ransomware is a Trojan with file-encoding features that block your content to force you into paying a fee for the restoration process (also known as decryption). Paying for your data's recovery may provide no real solution, and malware experts advise using preemptive data and system protection, when applicable. Current anti-malware security should detect and remove the Comrade Circle Ransomware before it can finish encrypting any content. Con artists using threat-based...

Webstarts.biz

Posted: October 7, 2016 | Category: Browser Hijackers
Webstarts.biz is a search engine that delivers results via the Plusnetwork.com search engine. Apart from the simple search field, Webstarts.biz also provides its users with quick links to some popular Web destinations like Amazon, eBay, Facebook, Twitter, etc. This 'feature' is not that helpful considering that most people already have bookmarked the websites they visit on a regular basis. It is safe to say that Webstarts.biz doesn't have much to offer to its users, and users who opt to use...

Web-alrt-phsng-atck.xyz

Posted: October 6, 2016 | Category: Browser Hijackers
Web-alrt-phsng-atck.xyz is a threatening domain used to promote an online tactic that works by convincing people that their computers are infected with a threats. It is possible that Web-alrt-phsng-atck.xyz may be used to host more than one tactic, but the one we encountered states that the visitor's computer is infected with the 'RDN/YahLover.worm!055BCCAC9FEC infection', and their information, credit card details, and files might be accessible by threatening hackers. Computer users should...

Gotoinstall.ru

Posted: October 6, 2016 | Category: Browser Hijackers
Gotoinstall.ru is a low-quality search engine that uses a customized Google Search API to deliver results to users. However, unlike the Google's original homepage, Gotoinstall.ru's search field also may be accompanied by advertisements that are irrelevant to the user's interests and search terms. For example, one of the first ads that may greet users who opt to visit Gotoinstall.ru is regarding home moving services, but it is entirely possible that the advertising campaign promoted by this...