Step-by-Step Malware Removal Instructions

Moia Ransomware
Ransomware

Moia Ransomware

Moia is ransomware that belongs to a ransomware family called Djvu. It encrypts files and appends the ".moia" extension to their filenames. For instance, it renames "1.jpg" to "1.jpg.moia", "sample.jpg" to "sample.jpg.moia". Moia creates the "_readme.txt" file to provide instructions on how to con

A1ndh Ransomware
Ransomware

A1ndh Ransomware

A1ndh is a ransomware-type program that encrypts data (locks files) and demands payment for the decryption (access recovery). Affected files are appended with a random character string and the ".a1ndh" extension. For example, a file like "1.jpg" would appear similar to "1.jpg.L75lyBa9fsElkmD6_0ZK

Protectionyoupc.com Ads
Notification Spam

Protectionyoupc.com Ads

Protectionyoupc[.]com displays deceptive content, asks for permission to deliver notifications, and redirects visitors to potentially malicious pages. It shares these qualities (at least two of them) with captcharesolverhere[.]top, indexforcaptchas[.]top, bitcoinshortener[.]top, and plenty of othe

Access Via Seed Phrase POP-UP Scam
Phishing/Scam

Access Via Seed Phrase POP-UP Scam

"Access via Seed Phrase" is a phishing scam that targets cryptocurrency wallet credentials (i.e., passphrases). Through this scheme, users can supposedly access their digital wallets (e.g., MetaMask, Trezor, Ledger, Fortmatic, etc.); however, by attempting to do so - they will inadvertently expose

L41 Ransomware
Ransomware

L41 Ransomware

L41 is a malicious program belonging to the MedusaLocker ransomware group. This malware is designed to encrypt data (render files unusable) and demand ransoms for the decryption. Compromised files are appended with the ".L41" extension. For example, a file titled "1.jpg" would appear as "1.jpg.L4

BBB Email Virus
Phishing/Scam

BBB Email Virus

Cybercriminals behind this email attempt to trick recipients into believing that they have received an email from a nonprofit organization called Better Business Bureau (BBB) and opening a malicious attachment. The file attached to it is used to distribute Dridex banking malware. The Bette

Cent Browser Adware
Adware

Cent Browser Adware

Cent Browser is an untrustworthy browser based on the Chromium open-source project. It has been observed operating as adware, and it also promotes the internet-start.net fake search engine - which is a browser hijacker trait. Since most users install Cent Browser unintentionally, it is also classi

WebCouponSearch Browser Hijacker
Browser Hijacker

WebCouponSearch Browser Hijacker

WebCouponSearch is a browser-hijacking application designed to promote the webcouponsearch.com address. Webcouponsearch.com is a fake search engine. WebCouponSearch promotes it by changing web browser's settings. WebCouponSearch changes the default search engine, homepage, and new tab page

ShieldBrowser Adware
Adware

ShieldBrowser Adware

ShieldBrowser is an untrustworthy browser, which is detected as adware. Software within this classification operates by running intrusive advertisement campaigns and usually has data tracking abilities. Due to the dubious methods used to distribute ShieldBrowser, it is also categorized as a PUA (P

Geqp9 Ransomware
Ransomware

Geqp9 Ransomware

Geqp9 is ransomware that makes files inaccessible for victims by encrypting them. Also, it renames all of the encrypted files and creates the "uKz4_HOW_TO_DECRYPT.txt" file (a ransom note). Geqp9 appends a string of random characters and the ".geqp9" extension to filenames. For example, it rename