SourTrade Malware: Fake Trading Ads Build It in Your Browser
SourTrade fake TradingView, Solana and Luno pages assemble unique Windows malware in the browser. Here is how the download works and what to do if the EXE ran.
Gridinsoft security desk
Fresh malware news, scam explainers, removal guides, browser fixes, and field notes from the Gridinsoft research team. Start with the alert, then move to the fix.
SourTrade fake TradingView, Solana and Luno pages assemble unique Windows malware in the browser. Here is how the download works and what to do if the EXE ran.
CVE-2026-16232 is under active attack against internet-exposed Check Point management servers. Install the hotfix, restrict access, and check…
CVE-2026-48294 in Adobe Acrobat for Chrome could expose rendered WhatsApp Web chats. Check the extension version and linked…
Is Reddit-Whisperer.com legit? Review the paid Reddit task offer, SOL payout warning signs, account risks, and what to do after sharing data.
Bacon-rumors.xyz was blocked as a malicious C2 indicator. Learn what the alert proves, find the initiating process, clean Windows, and check accounts.
Gridinsoft telemetry links 45 CoinMiner hashes across 34 Chinese Windows installations to rotating EXE names, signed launcher abuse, and fake SecurityHealth persistence.
Gridinsoft Labs identifies 22tuk.digital as a new high-confidence TookPS/OkoBot callback and analyzes its encoded PowerShell launcher,…
Static analysis of a suspicious Payment to Bank Details DOCX attachment with a broken altChunk/RTF import…
Old Favorites and .url shortcuts can be flagged when saved sites become phishing, scam, or adware…
A technical analysis of an SF Express e-invoice HTML attachment that steals email passwords through Telegram…
Runechat.com is flagged as phishing with a 3/100 trust score. Learn why not to log in,…
Is Echo.ac malware? Learn when Echo Anti-Cheat is legitimate, why echo_driver.sys needs verification, and what to…
SocGholish, also called FakeUpdates, uses fake browser update prompts on compromised sites. Learn what to do…
Learn what Trojan.Malware.300983.susgen means in VirusTotal results, when it is likely a false positive, and when…
Tips & Tricks
Got an OurBallot text asking you to reply Y or N? Learn what it…
Tips & Tricks
Verify a crypto wallet address, recipient, network, app, and transaction before sending money—and learn…
Tips & Tricks
The “Assistance In Claiming The Money” email is a fake inheritance offer. Learn the…
Tips & Tricks
A Dropbox purchase order email can be spoofed or sent through an abused real…
Troubleshooting
RAVCpl64.exe is usually a legacy Realtek audio control panel. Check its path and signature,…
Troubleshooting
armsvc.exe is usually Adobe Acrobat Update Service. Check its path and signature, disable it…
Troubleshooting
cc30wk.exe can belong to CLEVO Fn hotkeys and OSD, but a detection needs path,…
Security News
Chick-fil-A One accounts were accessed with reused passwords. Check rewards and payment settings, then…
Troubleshooting
ETDCtrl.exe and ETDCtrlHelper.exe usually belong to an ELAN touchpad. Check the path and signature,…
Tips & Tricks
Free sports streaming scams use fake players, card checks, pop-ups, notifications, and malicious downloads.…
Tips & Tricks
The original HiAnime service stopped operating. Learn how to spot unverified clones and clean…
Tips & Tricks
The original FMovies network was shut down. Learn how to identify copycat pages and…