Step-by-Step Malware Removal Instructions

Webbora Adware
Adware

Webbora Adware

Webbora is a rogue application that infiltrates the system during installation of other software. Following infiltration, this app generates various intrusive online advertisements and continually records information relating to users' Internet browsing activity. For these reasons, Webbora is cate

HappyLocker Ransomware
Ransomware

HappyLocker Ransomware

HappyLocker is file-encryption ransomware based on Hidden Tear - an open-source ransomware project. Cyber criminals promote HappyLocker via "Instant Satoshi BOT" - a malicious application that supposedly rewards users in Bitcoins for completing various 'captchas'. Following infiltration, HappyLoc

AiraCrop Ransomware
Ransomware

AiraCrop Ransomware

AiraCrop is ransomware-type malware that encrypts files using asymmetric cryptography. AiraCrop append the names of encrypted files with the "._AiraCropEncrypted!" extension (some AiraCrop variants append ".airacropencrypted!"). For example, "sample.jpg" is renamed to "sample.jpg._AiraCropEncrypt

WickedLocker Ransomware
Ransomware

WickedLocker Ransomware

WickedLocker is a file-encryption virus based on Hidden Tear - an open-source ransomware project. Following successful infiltration, WickedLocker encrypts files and file names with the ".locked" extension (e.g., "sample.jpg" is renamed to "sample.jpg.locked"). Following encryption, WickedLocker o

PaySafeGen Ransomware
Ransomware

PaySafeGen Ransomware

PaySafeGen is file encryption malware presented as a hacking tool, which supposedly generates genuine PaySafeCard codes free of charge. In fact, these claims are false. When executed, PaySafeGen encrypts various files stored on the system. During encryption, PaySafeGen appends the ".cry_" extensio

Telecrypt Ransomware
Ransomware

Telecrypt Ransomware

Telecrypt is file encryption ransomware written in the Delphi (programming language) and, therefore, the virus is in the form of a binary file and must be executed manually. If run accidentally, Telecrypt encrypts various files stored on the system (e.g., .doc, .pdf, .jpg, etc.). Research shows t

Copypast.ru Redirect
Browser Hijacker

Copypast.ru Redirect

copypast.ru is a fake Internet search engine identical to nixunhuan.com, searchisweb.com, searchemyn.com, and many others. Judging on appearance alone, copypast.ru barely differs from Yahoo, Bing, Google, and other similar legitimate search engines. Therefore, many users believe that copypast.ru

Nixunhuan.com Redirect
Browser Hijacker

Nixunhuan.com Redirect

nixunhuan.com is a fake Internet search engine identical to doseofhealthy.com, searchisweb.com, searchemyn.com, and many others.  By offering improved search results, nixunhuan.com often tricks users into believing that it is legitimate and useful. In fact, nixunhuan.com is promoted via deceptive

Microsoft Windows Is Not Genuine Scam
Ransomware

Microsoft Windows Is Not Genuine Scam

"Microsoft Windows is not genuine" is a fake error message that locks computer screens and states that the operating system (Windows) is not genuine. To return systems to their previous states, victims must enter a Windows product key. Be aware, however, that "Microsoft Windows is not genuine" err

Search.swissfist.com Redirect (Mac)
Mac Virus

Search.swissfist.com Redirect (Mac)

Developers present search.swissfist.com as a legitimate Internet search engine that generates improved search results, thereby enhancing the Internet browsing experience. These claims often trick users into believing that search.swissfist.com is legitimate, however, developers promote the site