Step-by-Step Malware Removal Instructions

Mainsourceofupgrade.best POP-UP Scam (Mac)
Mac Virus

Mainsourceofupgrade.best POP-UP Scam (Mac)

mainsourceofupgrade[.]best (or mainsourceoffreeupgrade.best) is a deceptive web page designed to encourage visitors into downloading/installing a fake Flash Player updater. This scam is furthered by claims that Adobe Flash Player is out of date. Rogue updaters are typically used to proliferate

Yourfine2upgradesfree.best POP-UP Scam (Mac)
Mac Virus

Yourfine2upgradesfree.best POP-UP Scam (Mac)

yourfine2upgradesfree[.]best is a deceptive website that encourages visitors to update the Adobe Flash Player. In fact, it tricks people into downloading a fake Adobe Flash updater and installing potentially unwanted applications (PUAs). We strongly advise against downloading anything from yourf

Best-girls-ever.com Ads
Notification Spam

Best-girls-ever.com Ads

There are many rogue websites similar to best-girls-ever[.]com on the internet. Other examples include hellopushworld[.]com, ultimate-captcha[.]com and pushbesttools[.]com. Most of these sites redirect visitors to other untrustworthy, potentially malicious sites or load dubious content. People do

Dacls RAT
Trojan

Dacls RAT

Dacls is the name of a remote access Trojan (RAT), a malicious program that allows cyber criminals to control infected computers remotely. Research shows that this malware is tied to Lazarus Group (a group of cyber criminals) and targets Linux and the Windows Operating System. Typically, cyber cr

[ponce.lorena@aol.com] Ransomware
Ransomware

[ponce.lorena@aol.com] Ransomware

Discovered by GrujaRS, [ponce.lorena@aol.com] is malicious software belonging to the GlobeImposter ransomware family. This malware operates by encrypting data and demanding payment for decryption tools/software. During the encryption process, all affected files are appended with the ".[ponce.loren

MZ434376 Ransomware
Ransomware

MZ434376 Ransomware

Discovered by GrujaRS, MZ434376 is a malicious program belonging to the KesLan ransomware family. It is designed to encrypt data and then demand ransom payments for decryption. During the encryption process, all compromised files are renamed with the ".MZ434376" extension. For example, "1.jpg" ap

Rdp Ransomware
Ransomware

Rdp Ransomware

Discovered by S!Ri, Rdp belongs to a family of ransomware-type programs called Paradise. Like many other programs of this type, Rdp encrypts files with a strong encryption algorithm so that they cannot be used or accessed unless they are decrypted with specific tools. These can only be purchased

Christmas Party Email Virus
Phishing/Scam

Christmas Party Email Virus

"Christmas Party Email" is a Christmas-themed spam campaign designed to spread Emotet Trojan-type malicious software. Through use of social engineering tactics, these emails are intended to trick users into opening the attached file, which will then in turn infect their systems with Emotet.

Deniz_Kizi Ransomware
Ransomware

Deniz_Kizi Ransomware

Discovered by Raby, Deniz_Kızı ransomware is named (in Turkish) after a mythical creature, a mermaid. Like most programs of this type, Deniz_Kızı is designed to encrypt data so that victims cannot access it unless they pay a ransom. Instructions about how to pay are provided in the "Please Read Me

Search.landslidesearch.com Redirect (Mac)
Mac Virus

Search.landslidesearch.com Redirect (Mac)

search.landslidesearch.com is the address of a fake search engine, which is promoted through a potentially unwanted application (PUA), a browser hijacker called Landslide Search. Generally, apps of this type promote fake search engines by changing certain browser settings. Additionally, most ga