Step-by-Step Malware Removal Instructions

BlackURLDefender Adware
Adware

BlackURLDefender Adware

BlackURLDefender is advertised as an extension that checks the visited websites in its blacklist and prevents users from opening them. However, BlackURLDefender is classified as adware - it displays advertisements. Also, it can read and change data on the pages that users visit. BlackURLDe

Artemis (Ultimate) Ransomware
Ransomware

Artemis (Ultimate) Ransomware

Artemis ransomware is a type of malware that encrypts files (makes them inaccessible/unusable), modifies their filenames, and generates a ransom note (the "ReadMe-[victim's_ID].txt" file). It renames files by appending the victim's ID, ultimatehelp@techmail.info email address, and ".ultimate" exte

Australia Post Email Scam
Phishing/Scam

Australia Post Email Scam

"Australia Post email scam" refers to a spam campaign. The letters sent through this campaign are disguised as messages relating to unpaid customs duties from "Australia Post". It must be emphasized that these emails are in no way associated with the legitimate postal service enterprise. This spam

MovieSearchOnline Browser Hijacker
Browser Hijacker

MovieSearchOnline Browser Hijacker

MovieSearchOnline is a browser hijacker promoting the moviesearchonline.com fake search engine. Since users typically download/install browser hijackers unintentionally, they are also classified as PUAs (Potentially Unwanted Applications). MovieSearchOnline assigns moviesearchonline.com as

News-keheza.cc Ads
Notification Spam

News-keheza.cc Ads

News-keheza[.]cc has two purposes: to trick visitors into agreeing to receive notifications and promote questionable, potentially malicious sites. The Internet is full of sites like news-keheza[.]cc, for example, ourhypewords[.]com, digitalcaptcha[.]top, and ralemploay[.]space. Users do not visit

Baldur Email Virus
Phishing/Scam

Baldur Email Virus

"Baldur email virus" refers to a malware-spreading spam campaign. The scam emails distributed through this campaign are presented as purchase orders. The "Baldur" spam campaign aims to infect recipients' devices with the Agent Tesla RAT (Remote Access Trojan). The "Baldur" scam emails requ

AtomSilo Ransomware
Ransomware

AtomSilo Ransomware

AtomSilo is a type of malware that blocks access to files by encrypting them and renames every encrypted file by appending the ".ATOMSILO" to its filename. It renames "1.jpg" to "1.jpg.ATOMSILO", "2.jpg" to "2.jpg.ATOMSILO", and so on. As its ransom note, AtomSilo creates the "README-FILE-#COMPUTE

Ourhypewords.com Ads
Notification Spam

Ourhypewords.com Ads

Once visited, ourhypewords[.]com asks for permission to show notifications. Also, ourhypewords[.]com can open untrustworthy websites. It is similar to ralemploay[.]space, everyday-news-channel[.]com, tobaitsie[.]com, and plenty of other pages that are promoted through shady ads, other dubious page

Digitalcaptcha.top Ads
Notification Spam

Digitalcaptcha.top Ads

Similar to ralemploay.space, everyday-news-channel.com, tobaitsie.com, ploringseav.space, and many others, digitalcaptcha[.]top is a rogue website. It is designed to load questionable content and/or redirect visitors to various (likely unreliable or malicious) sites. Users usually access such web

COVID 19 Ransomware
Ransomware

COVID 19 Ransomware

COVID 19 is a piece of malicious software categorized as ransomware. It is designed to encrypt data (lock files) and demand payment for the decryption. Affected files are appended with a ".covid-19" extension. For example, a file titled "1.jpg" would appear as "1.jpg.covid-19", "2.jpg" as "2.jpg.c