Step-by-Step Malware Removal Instructions

Secdojo Ransomware
Ransomware

Secdojo Ransomware

Secdojo is ransomware, a type of malware that encrypts files. It also renames files (by appending the ".secdojo" extension). For instance, it changes "1.jpg" to "1.jpg.secdojo" and "2.png" to "2.png.secdojo". Additionally, Secdojo creates the "index.html" file containing a ransom note. Screens

Tyson Ransomware
Ransomware

Tyson Ransomware

Tyson is ransomware (based on Chaos ransomware) that we discovered during an analysis of malware samples submitted to VirusTotal. Once infiltrated, Tyson encrypts files, appends its extension (".tyson") to filenames, and drops a ransom note ("DECRYPTION INSTRUCTIONS.txt"). For instance, it renames

Etyrthonrong.info Ads
Notification Spam

Etyrthonrong.info Ads

Our examination of etyrthonrong[.]info has shown that the site employs a deceptive tactic (known as clickbait) to lure visitors into granting it permission to send notifications to their devices. Usually, when a site like etyrthonrong[.]info has permission to show notifications, it bombards users

ProSearch Browser Hijacker
Browser Hijacker

ProSearch Browser Hijacker

ProSearch is a browser hijacker discovered during a routine investigative session. When inspecting a Torrenting website that uses rogue advertising networks, our researchers were redirected to a scam page using adult-oriented and video game themed lures. The webpage promoted a malicious installer

EFT Payment Overview Email Scam
Phishing/Scam

EFT Payment Overview Email Scam

After inspecting the "EFT Payment Overview" email, we determined that it is spam. It is presented as a notification concerning a payment. This spam message aims to deceive recipients into providing their email account log-in credentials to a phishing file. The spam email with the subject "

You Share The Same Name Email Scam
Phishing/Scam

You Share The Same Name Email Scam

We have reviewed this email and determined it to be a scam disguised as a notice regarding funds that can be released to the recipient. Typically, the goal of scammers behind such schemes is to obtain personal information or extract money from unsuspecting recipients. Emails of this type should be

Gamadd.com Ads
Notification Spam

Gamadd.com Ads

Our researchers discovered the gamadd[.]com rogue page while browsing suspicious sites. Upon inspection, we determined that gamadd[.]com promotes spam browser notifications and redirects users to different (likely unreliable/dangerous) websites. Most visitors to webpages like gamadd[.]com enter t

Error Updating The Mail Server Scam
Phishing/Scam

Error Updating The Mail Server Scam

After inspecting the "Error Updating The Mail Server" email, we determined that it is spam. The fake letter instructs recipients to manually update their mailbox to avoid service interruptions. This spam mail promotes a phishing website that targets email account log-in credentials (passwords).

Heigasic.com Ads
Notification Spam

Heigasic.com Ads

During our inspection, we found that heigasic[.]com is not a trustworthy website that uses clickbait to receive permission to show notifications. If allowed, heigasic[.]com can display deceptive notifications. Therefore, users should avoid visiting heigasic[.]com and similar web pages. Hei

Gadsfamily.com Ads
Notification Spam

Gadsfamily.com Ads

While investigating dubious websites, our researchers discovered the gadsfamily[.]com rogue page. It operates by promoting browser notification spam and generating redirects to other (likely untrustworthy/malicious) sites. Users primarily access gadsfamily[.]com and similar webpages via redirects