Gridinsoft Security Lab

What is Trojan:Win32/Leonem?

Trojan:Win32/Leonem – Information Stealer Analysis & Removal Guide

Stephanie AdlamMay 30, 202516 min read

Trojan:Win32/Leonem is an information-stealing threat that targets user credentials and system security. This malware harvests passwords while disabling security protections.…

What is slopsquatting?

Slopsquatting: New Malware Spreading Technique Targeting AI Assisted Developers

Stephanie AdlamApr 24, 20257 min read

Slopsquatting is a new type of cyber threat that takes advantage of mistakes made by AI coding tools, particularly LLMs that can “hallucinate”. In this post, we’ll break down this new type of attack, find out why it can occur, dispel some myths, and figure out how to prevent it. Slopsquatting – New Techniques Against […]

What is SnapeDex.com?

0.31 BTC SnapeDex.com Scam

Stephanie AdlamApr 22, 20254 min read

SnapeDex.com claims to be a cryptocurrency exchange offering free Bitcoin, but there are significant concerns about its legitimacy. However, this site is designed to scam users, particularly with its promise of 0.31 BTC for free. Here’s a breakdown of the findings based on available information. 0.31 BTC SnapeDex.com Scam Overview SnapeDex.com presents itself as a […]

What is Trojan:Win32/Yomal!rfn? In-Depth Analysis

Trojan:Win32/Yomal!rfn

Stephanie AdlamApr 21, 20255 min read

Trojan:Win32/Yomal!rfn is a detection name used by Microsoft Defender Antivirus. It’s heuristic detection, so it may be a false positive. In this post, I will tell you why this threat is dangerous, how to understand whether it is a false positive or not, and what to do if it is a real threat. Trojan:Win32/Yomal!rfn Overview […]

What is Trojan:Win32/Wacatac? Threat Analysis

Trojan:Win32/Wacatac Removal Guide for Windows 10/11

Brendan SmithApr 20, 20258 min read

I think Trojan:Win32/Wacatac, one of the nastiest pieces of malware I’ve encountered in my life. This digital pest has been wreaking havoc on Windows systems, stealing sensitive data, damaging system files, and even deploying ransomware. We’ve seen infections skyrocket by 34% just in the past year—making it one of those threats you really need to […]

What is D0glun ransomware?

D0glun Ransomware: Analysis and Protection Guide

Daniel ZimmermannApr 17, 202515 min read

D0glun Ransomware: Technical Analysis and Protection Guide D0glun ransomware emerged in January 2025 as a new crypto-ransomware variant with direct links to the Babuk and Cheng Xilun ransomware families. This sophisticated threat encrypts files using AES-256 encryption, appends the “.@D0glun@” extension to compromised files, and demands Bitcoin payment for decryption. This technical analysis explores D0glun’s […]

What is GorillaBot?

GorillaBot: Advanced Mirai Variant Targeting IoT Devices with Enhanced DDoS Capabilities

Stephanie AdlamApr 9, 202511 min read

GorillaBot is a sophisticated botnet malware that has been making headlines for its aggressive DDoS attacks. Building on the infamous Mirai botnet framework, this evolved threat targets internet-connected devices with advanced evasion techniques and encryption methods. This analysis breaks down GorillaBot’s technical features, attack vectors, and provides actionable protection measures. Mirai-based botnet malware targeting IoT […]

What is 0.31 BTC XLord promo code Scam?

0.31 BTC XLord Promo Code

Stephanie AdlamApr 1, 20255 min read

Gotexcoin appears to be a fraudulent cryptocurrency platform that lures users with promises of free Bitcoin, specifically 0.31 BTC XLord promo code, often linked to fake endorsements from Elon Musk. This scam is promoted through deceptive methods, such as deepfake videos on social media, aiming to trick users into depositing their own Bitcoin, which is […]

Online File Converter Scam Warning by FBI Denver

FBI Issues Online File Converter Malware Scam Warning

Stephanie AdlamMar 25, 20256 min read

The FBI Denver Field Office has warned about a growing scam involving free online file converter tools, which appears to be a significant cybersecurity concern. These tools, while converting files as advertised, often distribute malware, leading to serious issues like ransomware and identity theft, affecting users across the region. Online File Converter Scam Warning by […]

What is HackTool:Win64/GameHack!rfn?

HackTool:Win64/GameHack!rfn – Game Hacking Malware

Stephanie AdlamApr 10, 20259 min read

HackTool:Win64/GameHack!rfn is a Windows Defender detection for potentially dangerous game cheating software. Beyond their advertised functionality, these tools often contain hidden malicious features that can steal credentials, install additional malware, or compromise system security. This comprehensive guide analyzes the threat in detail and provides a complete removal solution. Threat Name HackTool:Win64/GameHack!rfn Type Game Hacking Tool […]

StilachiRAT: The Emerging Crypto-Stealing Malware Threat

StilachiRAT: The Emerging Crypto-Stealing Malware Threat

Daniel ZimmermannApr 20, 202514 min read

$34.6 million in cryptocurrency could be at risk from StilachiRAT, a complex remote access trojan first detected by Microsoft Incident Response in November 2024. Unlike conventional ransomware that announces its presence, this digital threat operates silently in the background, monitoring user activities until it identifies the perfect moment to drain cryptocurrency wallets. According to Microsoft’s […]

What is Steganography Attack? Explained in Details & Ways to Protect

Steganography Attack

Stephanie AdlamMar 19, 20256 min read

Researchers have discovered a non-obvious tactic in which attackers use steganography. While classic tactics rely on obfuscation and encryption, this method uses plain images as a malware carrier. In this post, I’ll go into more detail on how it works. Steganography Attack Overview Steganography, the practice of hiding data within another file, is increasingly used […]

MassJacker Malware Targets Pirated Software Users

MassJacker Malware

Stephanie AdlamMar 19, 20255 min read

Cybersecurity researchers have found MassJacker, a new, previously undocumented malware. It targets a predominantly freebie-seeking audience, i.e. users of pirated content. MassJacker Malware Targets Piracy Users MassJacker is a recently discovered malware that targets users downloading pirated software, aiming to steal their cryptocurrency. It is classified as a clipper malware, also referred to as cryware, […]

AI Assistant

Hello! 👋 How can I help you today?