Gridinsoft security desk

Security Blog

Fresh malware news, scam explainers, removal guides, browser fixes, and field notes from the Gridinsoft research team. Start with the alert, then move to the fix.

Fake FACEIT verification page with a fake Steam login window pulling Steam Guard and CS2 item cards into a phishing trap.

Top story ·

Fake FACEIT Steam Login Scam

Fake FACEIT verification pages use a fake Steam login window to steal Steam accounts, Steam Guard codes, and CS2 skins. Check the warning signs and recovery steps.

Nimbus RAT Teams Vishing

Nimbus RAT now rides a Teams vishing and Quick Assist chain. See the email-flood warning signs, Windows artifacts,…

Mirasvit Cache Warmer RCE

CISA added Mirasvit Cache Warmer CVE-2026-45247 to KEV. Check affected Magento stores, update to 1.11.12, and review logs…

Guides

View all
Fake SWIFT confirmation copy email leading to a phishing login trap.

Practical guide · 8 min read

SWIFT Confirmation Copy Email Scam

See examples of fake SWIFT Confirmation Copy emails, the red flags in wire-transfer payment slips, and what to do if you opened…

Repair desk

View all
Search box being pulled into an unwanted redirect tunnel for Fusebase Search cleanup.

Focused fix · 6 min read

Fusebase Search Redirect Removal

Remove the Fusebase Search redirect from Chrome or Edge by deleting the extension, restoring search settings, checking policies, and scanning Windows if…

Security lab · Jun 7, 2026

Neshta.Virus.FileInfector.DDS

Neshta.Virus.FileInfector.DDS is a file-infector alert. Learn what to check, when it may be a false positive, and how to clean Windows safely.

Jun 1, 2026

Notepad++ XML File Risk

Notepad++ 8.9.6.1 fixes config.xml and shortcuts.xml code execution flaws. Learn who is affected, how to update,…

Jun 1, 2026

Extension Keeps Returning?

If a browser extension keeps reinstalling itself, remove the source that restores it: sync, browser policy,…

Jun 1, 2026

VFXmed Virus Warning

Downloaded a VFXmed installer? Learn why cracked VFX software is risky, what Themida/DLL-hijack/infostealer alerts mean, and…

May 31, 2026

VectorGatewa.exe Removal

VectorGatewa.exe keeps coming back after a game download? Learn what the file means, how to remove…

May 31, 2026

Fake Adidas Fan Kit 2026 Scam

Got an Adidas Fan Kit 2026 WhatsApp link? Check why msgdeal.cc/offerwa.cc prize pages, quizzes, sharing prompts,…

May 29, 2026

Lively.Watchdog.exe Check

Lively.Watchdog.exe is usually part of Lively Wallpaper, but suspicious copies can be malware. Check the path,…

May 29, 2026

sdaCollector.vbs: Is It Safe?

sdaCollector.vbs is usually tied to Slate Digital Connect, but path, startup entry, hash, and Possible Threat…

Latest from every desk

Troubleshooting

Wanderlustar.com Redirect Removal

Remove Wanderlustar.com redirects by deleting the Wanderlustar extension, restoring browser settings, and scanning if…

Troubleshooting

Greatstartapp.com Redirect Removal

Remove the Greatstartapp.com homepage redirect by deleting Great Start - Homepage, resetting browser startup…

Troubleshooting

Searchtoggler.com Redirect Removal

Remove Searchtoggler.com redirects by deleting Search Toggler, resetting browser search settings, and checking Windows…

Troubleshooting

Myfocalfind.com Redirect Removal

Remove the Myfocalfind.com redirect by deleting My Focal Find, restoring browser search and new-tab…

AI Assistant

Hello! 👋 How can I help you today?