Threat research notebook

Gridinsoft Security Lab

Fresh malware notes, phishing samples, scam redirects, ransomware observations, and field reports from Gridinsoft research. No gallery, no filler: date, case, finding, next read.

297 lab records

Latest note ·

PUABundler:Win32/YandexBundled

PUABundler:Win32/YandexBundled is a detection of potentially unwanted application (PUA) associated with the Russian company Yandex. It is typically distributed as bundled software with repackaged or free programs. While being less dangerous than malware, it...

Field note ·

CSRF (Cross-Site Request Forgery) vs XSS

Cross-Site Request Forgery Cross-Site Request Forgery (CSRF) is an attack targeting vulnerabilities in computer security, posing...

Research log

03

Fake Instagram Hacking Services

Record ·

Instagram hacking scams is an old-new direction of online fraud that targets people who want to get into someone’s accounts on social media. Frauds...

04

Stopabit Virus

Record ·

Stopabit is an unwanted application that has almost no useful functionality. Users can see its promotions as a useful tool for screen time control,...

06

Bloom.exe

Record ·

Bloom.exe is a malicious miner that masquerades as a legitimate process. Its job is to use the victim's device to mine cryptocurrency for con...

09

PUA:Win32/Caypnamer.A!ml: What It Is and Removal

Record ·

PUA:Win32/Caypnamer.A!ml is a Microsoft Defender detection that should be judged by the affected file path, source, signature, and behavior, not by the name alone....

10

Virus:Win32/Floxif.H Removal

Record ·

Virus:Win32/Floxif.H is a severe Microsoft Defender file-infector alert. Learn how to remove it, rescan safely, and handle infected files or backups.

13

Trojan:Win32/Znyonm

Record ·

Trojan:Win32/Znyonm is a detection often seen during the backdoor malware activity in the background. Such malware can escalate privileges, enable remote access, or deploy...

14

Internet Is A Dangerous Place

Record ·

The "Internet Is A Dangerous Place" scam is a novel type of threatening email message that targets people with threats of intimidation and exposure....

AI Assistant

Hello! 👋 How can I help you today?