Gridinsoft security desk

Security Blog

Fresh malware news, scam explainers, removal guides, browser fixes, and field notes from the Gridinsoft research team. Start with the alert, then move to the fix.

Cracked CacheWarmer cookie moving into an ecommerce server gate, representing CVE-2026-45247 remote code execution risk.

Top story ·

Mirasvit Cache Warmer RCE

CISA added Mirasvit Cache Warmer CVE-2026-45247 to KEV. Check affected Magento stores, update to 1.11.12, and review logs for CacheWarmer cookie exploitation.

Netlogon CVE-2026-41089 RCE

CVE-2026-41089 is now reported as actively exploited. Patch Windows Server domain controllers and review Netlogon, LSASS, and authentication…

WP Maps Pro CVE-2026-8732

WP Maps Pro CVE-2026-8732 lets unauthenticated attackers create WordPress administrator accounts. Update to 6.1.1 and audit admins/logs.

Guides

View all
Fake Chrome Web Store copyright removal phishing notice targeting extension developers.

Practical guide · 6 min read

Chrome Web Store Scam

A fake Chrome Web Store copyright removal request is stealing Google logins from extension developers. Verify notices in official channels, avoid third-party…

Repair desk

View all
Editorial poster about blocking Ultahost.gl browser pop-ups and notification spam.

Focused fix · 7 min read

Ultahost.gl Pop-Ups: Removal and Safety Check

Ultahost.gl pop-ups usually start with abusive browser notifications, but recurring launches can point to adware or loader-style persistence. Remove the permission, check…

Jun 1, 2026

VFXmed Virus Warning

Downloaded a VFXmed installer? Learn why cracked VFX software is risky, what Themida/DLL-hijack/infostealer alerts mean, and…

May 29, 2026

Lively.Watchdog.exe Check

Lively.Watchdog.exe is usually part of Lively Wallpaper, but suspicious copies can be malware. Check the path,…

May 29, 2026

sdaCollector.vbs: Is It Safe?

sdaCollector.vbs is usually tied to Slate Digital Connect, but path, startup entry, hash, and Possible Threat…

May 29, 2026

Search1.me Redirect Fix

Search1.me redirects usually point to a browser hijacker, unwanted extension, or policy leftover. Use this cleanup…

May 29, 2026

Are PnP Windows Drivers Safe?

Plug-and-play Windows drivers are usually safer than random driver installers, but not risk-free. Learn when to…

May 29, 2026

WebWebWeb Redirect Fix

WebWebWeb.com redirects can take over browser search, homepage, or new tab settings. Remove suspicious extensions, policies,…

Latest from every desk

Tips & Tricks

Trojan:PowerShell/Asyncrat!rfn

What Trojan:PowerShell/Asyncrat!rfn means, why AsyncRAT is high risk, and how to clean up PowerShell…

Tips & Tricks

wslservice.exe: Safe or Malware?

wslservice.exe is normally the Windows Subsystem for Linux service, but suspicious copies can masquerade…

Security News

Flowise Chatflow RCE

Flowise CVE-2026-40933 can turn a malicious chatflow import into server-side command execution. Check self-hosted…

Security News

ChatGPhish AI Summary Phish

ChatGPhish shows how a web page summarized by ChatGPT can surface phishing links, fake…

Security News

EMS Patch Trap

FortiClient EMS CVE-2026-35616 was abused to push EKZ Infostealer as a fake patch. Check…

AI Assistant

Hello! 👋 How can I help you today?