Step-by-Step Malware Removal Instructions

BestMusicSearches Browser Hijacker
Browser Hijacker

BestMusicSearches Browser Hijacker

BestMusicSearches is a rogue browser extension. After analyzing it, our researchers classified it as a browser hijacker. BestMusicSearches operates by modifying browser settings to promote (via redirects) the bestmusicsearches.com fake search engine. Following installation onto our test sy

BATLOADER Malware
Trojan

BATLOADER Malware

BATLOADER is part of the infection chain where it is used to perform the initial compromise. This malware is used to execute payloads like Ursnif. Our team has discovered BATLOADER after executing installers for legitimate software (such as Zoom, TeamViewer Visual Studio) bundled with this malware

Power Off Adware
Adware

Power Off Adware

Power Off is a rogue application supposedly capable of managing program processes, e.g., launching, scheduling, restarting, shutting down, etc. Our researchers determined that this piece of software operates as advertising-supported software (adware) - by running intrusive advertisement campaigns.

360 Ransomware
Ransomware

360 Ransomware

Discovered by Boanbird, 360 is the name of a ransomware-type program. When we launched a sample on our test system, it encrypted files and appended their filenames with the ".360" extension. For example, a file originally titled "1.jpg" appeared as "1.jpg.360", "2.jpg" as "2.jpg.360", and so on. O

Worldcoolfeed.com Ads
Notification Spam

Worldcoolfeed.com Ads

Worldcoolfeed[.]com is a deceptive website that we have discovered while examining torrent, illegal movie streaming, and similar sites that use questionable advertising networks. We found that the purpose of worldcoolfeed[.]com is to trick visitors into allowing it to show notifications and redire

Gomorrah Stealer
Trojan

Gomorrah Stealer

Gomorrah is an information-stealing malware. We obtained a sample from VirusTotal and subsequently analyzed this malicious program. We discovered that it primarily targets account credentials and credit card numbers. Gomorrah stealer begins its operations by gathering data about the follow

Cat4er Ransomware
Ransomware

Cat4er Ransomware

During a routine inspection of new malware submissions to VirusTotal, our research team found the Cat4er ransomware. When a sample was launched on our test machine, this malware encrypted files and appended them with the ".Cat4er" extension. For example, a filename like "1.jpg" appeared as "1.jpg

Chillsearch.xyz Redirect (Mac)
Mac Virus

Chillsearch.xyz Redirect (Mac)

The chillsearch.xyz address (a fake search engine) became known to us after using a couple of fake Adobe Flash Player installers downloaded from deceptive websites. We have found that those installers hijacked a web browser - our browser opened chillsearch.xyz every time we entered a search quer

Bar1 New Tab Browser Hijacker (Mac)
Mac Virus

Bar1 New Tab Browser Hijacker (Mac)

Bar1 New Tab is a browser hijacker. After analyzing this piece of software, our researchers determined that it modifies browser settings to promote the barone.live fake search engine. Additionally, Bar1 New Tab spies on users' browsing activity. After being installed onto our test machin

Kexvideo.ru Ads
Notification Spam

Kexvideo.ru Ads

The kexvideo[.]ru is an untrustworthy website that our malware researchers have discovered while visiting pages that use questionable advertising networks. We have analyzed kexvideo[.]ru and found that it displays deceptive content to trick visitors into agreeing to receive notifications and redir