Step-by-Step Malware Removal Instructions

Advoiderce.com Ads
Notification Spam

Advoiderce.com Ads

While browsing untrustworthy sites, our research team discovered the advoiderce[.]com rogue webpage. Upon examination, we found that it is yet another site that promotes browser notification spam through a CAPTCHA-themed lure. This page can also redirect users elsewhere, likely unreliable or malic

BAFAIAI Ransomware
Ransomware

BAFAIAI Ransomware

Our researchers found the BAFAIAI ransomware while inspecting new file submissions to the VirusTotal site. This malicious program is part of the MedusaLocker ransomware family. BAFAIAI encrypts files and creates a ransom note. It adds a ".BAFAIAI" extension to their filenames. For example, a file

Eternidade Stealer
Trojan

Eternidade Stealer

Eternidade is a malicious program written in the Delphi programming language. It is a stealer and banking trojan capable of extracting sensitive data from infected devices. Eternidade has been used to target users in Brazil. This malware can self-spread through WhatsApp spam. Eternidade is

Thicationize.co.in Ads
Notification Spam

Thicationize.co.in Ads

Our review of thicationize.co[.]in shows that the site is created to trick users into enabling its notifications. If someone allows them, the site can push misleading content (e.g., fake warnings) directly to their device. Because of this, thicationize.co[.]in and similar pages should be avoided,

Hypstichly.co.in Ads
Notification Spam

Hypstichly.co.in Ads

Our research team discovered hypstichly.co[.]in while investigating suspicious websites. After inspecting this rogue webpage, we learned that it promotes browser notification spam and generates redirects to other (likely dubious/dangerous) sites. Hypstichly.co[.]in and analogous pages are primaril

Boonaphably.com Ads
Notification Spam

Boonaphably.com Ads

Boonaphably[.]com is a rogue page discovered by our research team during a routine inspection of untrustworthy websites. Upon examining this webpage, we learned that it promotes browser notification spam and redirects visitors to other (likely dubious/harmful) sites. Most users access pages like b

Sturnus Banking Trojan (Android)
Trojan

Sturnus Banking Trojan (Android)

Sturnus is an Android malware (a banking Trojan)_ that can control a device. It is capable of reading chat messages, stealing banking details by showing fake login pages, and more. Attackers can remotely perform malicious actions in the background while keeping the screen hidden from the victim.

Proadrast.com Ads
Notification Spam

Proadrast.com Ads

Our inspection of proadrast[.]com has revealed that the site uses deception to get permission to show notifications. If visitors allow the site to send notifications, they can be exposed to malicious content. Thus, proadrast[.]com and similar web pages should not be trusted or allowed to display n

Meshchainsolutions.com Ads
Notification Spam

Meshchainsolutions.com Ads

Upon inspecting meshchainsolutions[.]com, we concluded that it is designed to deceive visitors into permitting it to show notifications. If allowed, meshchainsolutions[.]com can send fake alerts to promote other potentially malicious pages. Users should avoid visiting meshchainsolutions[.]com and

F*ckFBI Ransomware
Ransomware

F*ckFBI Ransomware

We have examined F*ckFBI (malware that our team encountered while inspecting samples uploaded to VirusTotal) and discovered that it is ransomware that encrypts files and provides a ransom note containing payment and contact information. Also, the ransomware renames files by appending its extension