Step-by-Step Malware Removal Instructions

May Ransomware
Ransomware

May Ransomware

May is a ransomware-type virus discovered by MalwareHunterTeam. Once infiltrated, May encrypts various data using AES-256 and RSA-4096 encryption algorithms and appends filenames with the ".locked" extension (for example, "sample.jpg" is renamed to "sample.jpg.locked"). May then creates a text fi

Weather-genie.com Redirect
Browser Hijacker

Weather-genie.com Redirect

According to the developers, weather-genie.com is a 'high-experience' Internet search engine that significantly enhances the browsing experience by generating improved results. Judging on appearance alone, weather-genie.com may appear legitimate and useful, however, this website is promoted via a

ONYONLOCK Ransomware
Ransomware

ONYONLOCK Ransomware

ONYONLOCK is a new variant of a ransomware-type virus called BTCWare. This virus was discovered by security researcher, MalwareHunterTeam. Following successful infiltration, ONYONLOCK encrypts various data stored on victims' computers. Furthermore, it appends the ".onyon" extension to the name of

CryptoViki Ransomware
Ransomware

CryptoViki Ransomware

CryptoViki is a ransomware-type virus discovered by malware security researcher, Marcelo Rivero. Once infiltrated, CryptoViki encrypts various data and appends the ".viki" extension to the names of all compromised files. For instance, "sample.jpg" is renamed to "sample.jpg.viki". Following succes

ShareWithUs Adware
Adware

ShareWithUs Adware

ShareWithUs is a deceptive application that stealthily infiltrates systems during installation of other programs (the "bundling" method). Following infiltration, this app generates various intrusive online advertisements and continually records information relating to users' Internet browsing act

GruxEx Ransomware
Ransomware

GruxEx Ransomware

GruxEx is a copy of an open-source ransomware project called Hidden Tear. Once infiltrated, GruxEx employs AES cryptography to encrypt various files. During encryption, this ransomware appends the ".grux" extension to the name of each encrypted file. For instance, "sample.jpg" is renamed to "samp

DarkoderCrypt0r Ransomware
Ransomware

DarkoderCrypt0r Ransomware

Discovered by security researcher, Lawrence Abrams, DarkoderCrypt0r is a copy of a ransomware-type virus called Wcry (WannaCry). Once infiltrated, DarkoderCrypt0r encrypts various data and appends the ".DARKCRY" extension to the name of each encrypted file (for example, "sample.jpg" is renamed to

Your Windows Computer Has Been Blocked Scam
Adware

Your Windows Computer Has Been Blocked Scam

"Your Windows Computer Has Been Blocked" is a fake error message displayed by a malicious website. Users are redirected to this site by potentially unwanted adware-type programs (PUPs). These apps often infiltrate systems without users' consent. In addition, they collect personally identifiable in

Rambler.ru Redirect
Browser Hijacker

Rambler.ru Redirect

Developers present rambler.ru as an Internet search engine that supposedly generates improved search results and, therefore, enhances the Internet browsing experience. Judging on appearance alone, rambler.ru may appear legitimate and useful, however, this site records various user-system informat

Spora Ransomware
Ransomware

Spora Ransomware

Spora is a ransomware-type virus distributed via spam emails (malicious attachments). Each rogue email contains an HTA file which, once executed, extracts a Javascript file ("closed.js"), placing it in the system "%Temp%" folder. The Javascript file extracts an executable with a random name and ru