Step-by-Step Malware Removal Instructions

Rguy Ransomware
Ransomware

Rguy Ransomware

Our team has discovered Rguy while analyzing samples submitted to VirusTotal. It was found that Rguy is ransomware that encrypts files and appends the ".rguy" extension to filenames. Also, it provides instructions on how to contact the attackers and the prices of decryption tools (they are provide

Allowpcprotect.com Ads
Notification Spam

Allowpcprotect.com Ads

Allowpcprotect[.]com is a deceptive website that uses a scare tactic to trick visitors into purchasing antivirus software. It also asks for permission to show notifications. We have discovered this site while inspecting other sites that use shady advertising networks. Allowpcprotect[.]com

Protectlab.xyz Ads
Notification Spam

Protectlab.xyz Ads

Our research team found protectlab[.]xyz while inspecting untrustworthy websites. This rogue page is designed to load deceptive content, push browser notification spam, and redirect visitors to different (likely unreliable/malicious) websites. Most users enter sites like protectlab[.]xyz via webpa

Everyday Quote Adware
Adware

Everyday Quote Adware

While inspecting dubious download websites, our researchers discovered the Everyday Quote browser extension. It promises to display daily inspirational quotes. After analyzing this piece of software, we determined that it operates as adware. Adware may need certain specifications (e.g., co

Toftheussi.xyz Ads
Notification Spam

Toftheussi.xyz Ads

Toftheussi[.]xyz is a rogue website designed to push browser notification spam and redirect visitors to other (likely untrustworthy/malicious) pages. Our researchers discovered it while inspecting sites that use rogue advertising networks. Most users enter webpages like toftheussi[.]xyz via such

Rain Tab Browser Hijacker
Browser Hijacker

Rain Tab Browser Hijacker

We have discovered the Rain Tab browser extension on a shady website offering to download and install recommended Chrome extension. After examination, we found that it hijacks a web browser by changing some of its settings to raintab.com. It was concluded that Rain Tab is a browser hijacker forcin

Keep It Secure Browser Hijacker
Browser Hijacker

Keep It Secure Browser Hijacker

Keep It Secure is a browser extension our researchers discovered while inspecting dubious download webpages. After analyzing this piece of software, we learned that it operates as a browser hijacker. Keep It Secure modifies browser settings to promote (by causing redirects to) the keepitsecure.tod

Your Account Will Be Suspended In 48hrs Email Scam
Phishing/Scam

Your Account Will Be Suspended In 48hrs Email Scam

Our team has analyzed this email and concluded that it is a typical phishing email used to trick recipients into providing sensitive information. It is disguised as a letter from an email service provider. It contains a link designed to open a deceptive site requesting login credentials. T

Strip4you Ransomware
Ransomware

Strip4you Ransomware

While inspecting new malware submissions to VirusTotal, our research team discovered the Strip4you ransomware. We determined that this malicious program is part of the Xorist ransomware family. On our test machine, Strip4you encrypted files and appended their filenames with a ".strip4you" extensi

Quantum Ransomware
Ransomware

Quantum Ransomware

We have discovered malware called Quantum while analyzing the samples submitted to the VirusTotal page. It was learned that Quantum is ransomware that encrypts files and appends the ".quantum" extension to filenames. It also generates an HTML file named "README_TO_DECRYPT.html" containing a ransom