Step-by-Step Malware Removal Instructions

.harma (Ouroboros) Ransomware
Ransomware

.harma (Ouroboros) Ransomware

Discovered by malware researcher S!Ri, .harma (Ouroboros) is a ransomware-type malicious program belonging to the Ouroboros malware family. Systems infected with this software have data encrypted and victims receive ransom demands for decryption tools/software. During the encryption process, all

My Package Homepage Browser Hijacker
Browser Hijacker

My Package Homepage Browser Hijacker

The My Package Homepage app supposedly provides a package tracking service, however, this rogue software is categorized as a browser hijacker, a potentially unwanted application (PUA) that promotes a fake search engine (search.hmypackagehomepage.com) and gathers browsing data. Like most browser h

Search.doc2pdfsearch.com Redirect (Mac)
Mac Virus

Search.doc2pdfsearch.com Redirect (Mac)

Practically identical to doctopdfsupreme.com, search.pricklybears.com, and many others, search.doc2pdfsearch.com is a fake search engine and promoted by the DOC2PDF Convert browser hijacker. These rogue applications modify browsers and restrict/deny access to settings. Additionally, most browse

Doctopdfsupreme.com Redirect (Mac)
Mac Virus

Doctopdfsupreme.com Redirect (Mac)

doctopdfsupreme.com is a fake search engine which is promoted through a potentially unwanted application (PUA), a browser hijacker called docpdfsupreme (or docpdfsupreme - Search the web and convert PDF). Typically, browser hijackers promote fake search engines by changing certain browser setti

Your computer hacked! Email Virus
Phishing/Scam

Your computer hacked! Email Virus

Scammers behind this email claim that they have hacked the computer and taken control of the recipient's personal and financial data. They threaten to delete the data unless the recipient pays a specific ransom amount. Extortion, however, is not their primary goal. They also attempt to trick peop

TRSomware Is Back Ransomware
Ransomware

TRSomware Is Back Ransomware

TRSomware is a new variant of MMDecrypt ransomware. It operates by encrypting the data of infected systems so that criminals can demand payment for decryption tools/software. During encryption, filenames are appended with the ".TRSomware[is_back__New-Algorithm__By_MaMo434376]" extension. For exam

Devos Ransomware
Ransomware

Devos Ransomware

Devos is a part of the Phobos ransomware family. Like most programs of this type, Devos blocks access to files by encryption, changes filenames and provides victims with instructions about how to recover their files. This ransomware renames all encrypted files by adding the victim's ID, developer'

Centerplaceofupgrade.pro POP-UP Scam (Mac)
Mac Virus

Centerplaceofupgrade.pro POP-UP Scam (Mac)

centerplaceofupgrade[.]pro is a deceptive site promoting a fake Adobe Flash Player updater scam. The web page claims that the plug-in is outdated and recommends installation of the latest updates. Note that bogus software updates are typically used to proliferate nonoperational, untrustworthy an

.777 (njkwe RaaS) Ransomware
Ransomware

.777 (njkwe RaaS) Ransomware

.777 (njkwe RaaS) belongs to the Paradise ransomware family and was discovered by S!Ri. This ransomware encrypts data, renames all files by adding a string containing the operator's number, victim's personal ID and appending the ".777" extension to filenames. For example, it renames "1.jpg" to "1.

PRT Ransomware
Ransomware

PRT Ransomware

Discovered by GrujaRS, PRT is a malicious program belonging to the Paradise ransomware family. It operates by encrypting data and demanding payment for decryption tools/software. During the encryption process, all affected files are renamed according to the following pattern: original filename, vi