Step-by-Step Malware Removal Instructions

CheckControl Adware (Mac)
Mac Virus

CheckControl Adware (Mac)

Our research team discovered CheckControl on new VirusTotal submissions. After launching this app on our test system, we found that CheckControl is an adware-type application belonging to the AdLoad malware family. Adware operates by enabling the placement of advertisements on sites visi

Xyz Ransomware
Ransomware

Xyz Ransomware

Found by our research team among new VirusTotal submissions, Xyz is a piece of malicious software within the ransomware classification. During analysis, we discovered that this ransomware encrypts data and renames the affected files. On our test system, it appended the encrypted files with a ".xy

Bbbw Ransomware
Ransomware

Bbbw Ransomware

Bbbw is the name of yet another malicious program belonging to the Djvu ransomware family, which we have detected when reviewing new submissions to VirusTotal. Ransomware is designed to encrypt data and demand payment for the decryption; Bbbw is not an exception. Once launched on our test machine

CABP Ransomware
Ransomware

CABP Ransomware

CABP is ransomware that our team has discovered while analyzing malware samples submitted to VirusTotal. We found that it encrypts and renames (by appending the ".CABPRANSOM_ENCRYPTED" extension) files and displays a pop-up window containing a ransom note. The CABP ransomware was first discovered

Maiv Ransomware
Ransomware

Maiv Ransomware

Our malware researchers have discovered the Maiv ransomware while analyzing malware samples recently submitted to VirusTotal. After testing the ransomware, we have learned that it belongs to the Djvu family. Maiv has three key qualities: it encrypts files, appends the ".maiv" extension to filename

VirtualGuest Adware (Mac)
Mac Virus

VirtualGuest Adware (Mac)

Detected by our researchers on new submissions to VirusTotal, VirtualGuest is a rogue application. During analysis, we discovered this piece of software to be an adware-type app belonging to the AdLoad malware family. Adware may require certain conditions to be met (e.g., compatible devi

Mp3fromyou.tube Ads
Adware

Mp3fromyou.tube Ads

Mp3fromyou[.]tube is an untrustworthy website, which our research team found when inspecting rogue advertising networks. This site offers the illegal service of converting YouTube videos (via links) to downloadable MP3 audio files. In addition to breaking copyright laws, visiting/using mp3fromyou

Allcome Clipper Malware
Trojan

Allcome Clipper Malware

Discovered by malware analyst 3xp0rt, Allcome is a clipper-type malicious program. Malware of this type targets cryptocurrencies by replacing clipboard (copy-paste buffer) data for outgoing transactions. Our researchers have looked into Allcome clipper's online promotional material. We fou

Wgbkr Ransomware
Ransomware

Wgbkr Ransomware

Discovered by our research team during a routine inspection on new submissions into VirusTotal, Wgbkr is a ransomware-type program. When launched on our test machine, it encrypted files and appended their filenames with a random character string and the ".wgbkr" extension. For example, a file ori

DarkWatchman RAT
Trojan

DarkWatchman RAT

We have read about the DarkWatchman malware in a blog post written by other malware researchers. We've learned that DarkWatchman is a JavaScript-based Remote Access Trojan (RAT) that cybercriminals distribute using malicious email attachments. We also found that DarkWatchman does not write any fil