Step-by-Step Malware Removal Instructions

FIXI Ransomware
Ransomware

FIXI Ransomware

Discovered by xiaopao and belonging to the Scarab ransomware family, FIXI ransomware is designed to encrypt files, rename them and create the "HOW TO DECRYPT FILES.TXT" text file (a ransom message) in all folders that contain encrypted files. It renames files by replacing their filenames with a st

HDConverterSearch Browser Hijacker
Browser Hijacker

HDConverterSearch Browser Hijacker

HDConverterSearch is dubious software endorsed as a tool capable of improving web searches. In fact, it operates by making alterations to browser settings to promote hdconvertersearch.com (a bogus search engine). Therefore, HDConverterSearch is categorized as a browser hijacker. Additionally, it

AB89 Ransomware
Ransomware

AB89 Ransomware

AB89 is part of the Matrix ransomware family and was discovered by Michael Gillespie. Typically, malware of this type is designed to encrypt files, modify their filenames and create and/or display ransom messages. AB89 renames encrypted files by replacing their filenames with the AdamBrown89@crip

Social Network Hacks Scam
Phishing/Scam

Social Network Hacks Scam

"Social network hacks" is a large-scale scam promoted through several different campaigns. This scheme is disguised as providing resources for hacking social networking/media and service (e.g. streaming) accounts. The "hacking tools" are supposedly capable of hijacking Facebook, Instagram, WhatsA

AnyConverterSearch Browser Hijacker
Browser Hijacker

AnyConverterSearch Browser Hijacker

AnyConverterSearch is a browser hijacker, which changes certain browser settings to portal.anyconvertersearch.com or feed.anyconvertersearch.com (addresses of fake search engines). Commonly, apps of this type collect browsing-related data as well. Browser hijackers are categorized potentially unw

Protomolecule Ransomware
Ransomware

Protomolecule Ransomware

This malware belongs to the Scarab ransomware family and was discovered by xiaopao. Protomolecule ransomware encrypts files and renames each by replacing the filename with a string of random characters, and replacing the extension with ".protonmolecule@gmx.us". For example, it would rename a file

SearchProConverter Browser Hijacker
Browser Hijacker

SearchProConverter Browser Hijacker

SearchProConverter is a browser hijacker designed to modify browsers to promote searchproconverter.com (a fake search engine). Additionally, this browser hijacker also has data tracking capabilities, which are employed to monitor users' browsing activity. Due to the dubious methods used to prolif

Searches.club Redirect
Browser Hijacker

Searches.club Redirect

When visited, searches.club redirects to various other dubious websites, depending on users' geolocations. Research shows that searches.club appears in browser settings when the Boi Tab app is installed, however, other apps might also promote it. Applications that promote rogue addresses (mostly

AW46 Ransomware
Ransomware

AW46 Ransomware

AW46 is a malicious program belonging to the Matrix ransomware family. Systems infected with this malware have their data encrypted and users receive ransom demands for decryption keys/tools. During the encryption process, all affected files are renamed following this pattern: "[alexwind46@yahoo.

Ment Ransomware
Ransomware

Ment Ransomware

Ment is a malicious program belonging to the TomNom ransomware family. It prevents victims from accessing their files by encryption. It also changes the filenames of encrypted files by appending the ".ment" extension. For example, a file named "1.jpg" would be changed to "1.jpg.ment", "2.jpg" to "