Threat research notebook

Gridinsoft Security Lab

Fresh malware notes, phishing samples, scam redirects, ransomware observations, and field reports from Gridinsoft research. No gallery, no filler: date, case, finding, next read.

297 lab records

Field note ·

Meduza Stealer

The Malware world evolves constantly, and it would be reckless to ignore newcomers and their potential....

Research log

01

Program:Win32/Wacapew.C!ml

Record ·

Program:Win32/Wacapew.C!ml detection refers to programs that have suspicious properties. This can be either a false positive or a detection of a program that has...

03

RegAsm.exe: Safe or Malware?

Record ·

RegAsm.exe is a legitimate Microsoft .NET tool, but malware can imitate or abuse it. Check the path, signature, command line, startup entries, and blocked...

04

What Is TextInputHost.exe?

Record ·

TextInputHost.exe is usually a safe Microsoft Windows input process. Learn how to verify its path and signature, fix high GPU usage or system errors,...

07

Sniffing vs Spoofing

Record ·

Learn the difference between sniffing and spoofing, how attackers use traffic capture and fake identity, and how to protect accounts, devices, and networks.

10

What Is UsoClient.exe? Safe or Virus?

Record ·

UsoClient.exe is a legitimate Windows Update component, not a virus when it runs from C:\Windows\System32\UsoClient.exe and is signed by Microsoft Windows. It belongs to...

12

Behavior:Win32/Fynloski.gen!A

Record ·

Behavior:Win32/Fynloski.gen!A is a heuristic detection of Microsoft Defender that flags activities of Fynloski malware. This malicious program allows attackers to control the infected system...

15

What Is OmApSvcBroker.exe?

Record ·

What is OmApSvcBroker.exe? OmApSvcBroker.exe is usually an MSI Center, MSI Dragon Center, or MSI NBFoundation Service process. On MSI laptops and motherboards it can...

16

How to Remove Advanced Window Manager Adware

Record ·

Advanced Window Manager is potentially unwanted software that floods users' systems with advertisements. It pretends to be a tool that adds new functionality to...

AI Assistant

Hello! 👋 How can I help you today?