Keyword: browser hijacker
4869 Total Search   |   Showing Results : 41 - 60
Mail Outlook PaleMoon PocoMail Postbox SeaMonkey The Bat! Thunderbird WaterFox Credentials from the following browsers: 360 Browser 7Star Amigo Brave CentBrowser Chedot Chromium Citrio Coccoc Comodo
the following data: User Name Computer Name OS Name Processor Name Amount of Memory Keyboard Logs Username and Password from the following browsers: 360 Browser 7Star Amigo Brave CentBrowser Chedot
time Internet Explorer is used by adding the following registry keys: HKEY_LOCAL_MACHINE\Software\Microsoft\ Windows\CurrentVersion\Explorer\ Browser Helper Objects\{812ACF1A-E1CC-47F1-AD1E-FE1E9DDC8549}
CX MultiversX Nami Nifty Wallet Oxygen - Atomic Crypto Wallet Pali Wallet Phantom Ronin Wallet Saturn Wallet Station Wallet TronLink Wombat Wallet XDEFI Yoroi It steals browser data from: 360Browser
Username OS Version and Product Name OS Architecture CRC32 of SID Information from the following applications: Web Browsers 360 Browser 360 Secure Browser Apple Safari Avant Browser Avast Secure Browser
This spyware may be dropped by other malware. It acts as a Browser Helper Object (BHO) that monitors a user's Internet-browsing habits. Arrival Details This spyware may be dropped by other malware.
Browser Helper Object (BHO): HKEY_CLASSES_ROOT\main.BHO (Default) = "Browser Helper Object" HKEY_CLASSES_ROOT\main.BHO\CLSID (Default) = "{AFD4AD01-58C1-47DB-A404-FBE00A6C5486}" HKEY_CLASSES_ROOT\main.BHO
Processor Architecture Network Adapter Configuration Clipboard data Current time Credentials from the following applications: Browsers: 360 Browser 7Star Amigo BlackHawk Brave CentBrowser Chedot Chrome
downloaded unknowingly by users when visiting malicious sites. Installation This Ransomware drops the following files: %Application Data%\Internet Browser\libeay32.dll %Application Data%\Internet Browser
Application adds the following processes: "%User Temp%\~nsu.tmp\Au_.exe" _?=%User Temp%\ "%System%\cscript.exe" //Nologo "clear_cache.js" "" -runmode=delproduct -name="Browser Hero" "%System%\cscript.exe
by other malware or as a file downloaded unknowingly by users when visiting malicious sites. Installation This Trojan drops the following files: %Application Data%\Chrome Browser\chrome - copy of the
This adware arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. It acts as a Browser Helper Object (BHO) that monitors a
time Internet Explorer is used by adding the following registry keys: HKEY_LOCAL_MACHINE\Software\Microsoft\ Windows\CurrentVersion\Explorer\ Browser Helper Objects\{9018062B-CB6F-4436-91B0-7FA47332655E}
This backdoor checks the default browser by querying a certain registry. It then creates a hidden instance of the default browser and injects code into it. The hidden browser process attempts to
passwords, and hostnames from the following browsers: 360 Browser 8pecxstudios Cyberfox Apple Computer Safari Catalina Group Citrio Chromium Chromodo CocCoc Comodo Dragon Comodo IceDragon Coowon Epic Privacy
time Internet Explorer is used by adding the following registry keys: HKEY_LOCAL_MACHINE\Software\Microsoft\ Windows\CurrentVersion\Explorer\ Browser Helper Objects\{AFAEF13D-AFA1-4FAF-A89A-351A0545C6BC}
Information RAM Information Network Adapter Configuration Clipboard data Current time It gathers credentials from the following: Browsers (User Data): 360 Browser 7Star Amigo BlackHawk Brave CentBrowser Chedot
Mesh wallet Nash wallet Starcoin Tron wallet Zcash Browsers: 360 Browser 7Star Amigo Brave CentBrowser Chrome Chromium Citrio CocCoc Comodo Coowon Edge Elements Browser Epic Privacy Browser Gecko Iridium
to get stored information such as user names, passwords, and hostnames from the following browsers: 360 Browser 8pecxstudios Cyberfox Apple Computer Safari Catalina Group Citrio Chromium Chromodo
This joke program plays the music video of Friday by Rebecca Black while randomly moving around the browser window. It continuously displays a message box 579 times. This joke program may be hosted