Malware

Remove “FedEx Delivery Address Confirmation” email

The “FedEx Delivery Address Confirmation” email is part of a phishing campaign disguised as a FedEx delivery notification. The phishing email targets users’ email passwords by asking users to type them to confirm the delivery of their packages. However, this is a fake package notification, and interacting with it by typing your password would lead to your account being hijacked by…

Remove “Capital One – Unusual Spending Activities Detected” email

The “Capital One – Unusual Spending Activities Detected” email is part of a phishing campaign that targets Capital One Business login credentials. The phishing email informs recipients that unusual spending activity has been detected on the account and that a message from Capital One’s Fraud Monitor Department needs to be reviewed to avoid account restrictions. The email has a button…

Remove “Capital One – Transfer Schedule” email

The “Capital One – Transfer Schedule” email is part of a phishing campaign that targets users’ Capital One login credentials. The email is disguised as a notification about an upcoming transfer of $6,920. The email has a “View transfer activity” button, which would lead users to a phishing site. Users who type in their Capital One login credentials may suffer…

Remove “Chase Account Temporarily Restricted” email

The “Chase Account Temporarily Restricted” email is part of a phishing campaign that targets users’ Chase login credentials. The email is made to look like a security alert from Chase about unusual activity on the account. Supposedly, the recipient’s account has been restricted because of a security breach. To regain access to the account, users are requested to click the…

Remove “Secure Your Trust Wallet Account” email

The “Secure Your Trust Wallet Account” email is part of a phishing campaign that targets Trust crypto wallet credentials. The email falsely claims that Trust has supposedly detected an action that requires immediate verification to secure the account. If you click on the button provided in the email, you will be taken to a phishing site that requests your recovery phrase.…

Remove “American Express – Unrecognized Transaction” email

The “American Express – Unrecognized Transaction” email is part of a phishing campaign that falsely explains users need to verify a recent transaction made from their American Express account. The email asks that recipients use the provided button to log in to their accounts. However, because this is a phishing email, the button will lead to a fake American Express site.…

Remove Sage ransomware

Sage ransomware is file-encrypting malware that targets personal files. The malware is part of the Djvu/STOP ransomware family and can be identified by the .sage extension added to encrypted files. Unfortunately, you cannot open any files with this extension unless you first use a decryptor on them, which only the malware operators currently have. Only users who have backups of…

Remove “TNT Express” email

The “TNT Express” email is part of a phishing campaign that aims to steal users’ email login credentials. The email is disguised to look like a notification email from international shipping company TNT. The recipient supposedly has a package scheduled for delivery. The email has a malicious attachment, disguised as documentation related to the package. If users open the attachment, they…

Remove “Zoho – Review Your Outgoing Emails” email

The “Zoho – Review Your Outgoing Emails” email falls into the phishing scam category. The email aims to steal users’ Zoho login credentials by trying to trick users into trying to log in on a phishing site. The email falsely claims that recipients need to review their outgoing emails through Zoho’s new system. Some emails have supposedly been rejected and not…

Remove “Update Server Terms Now” email

The “Update Server Terms Now” email is part of a phishing campaign that aims to steal users’ email login credentials. The email claims that the recipient’s email account will be terminated on a specific date unless users click on the provided button to indicate that they are still using the email account. Users who interact with the email will be…