Virus and Spyware Removal Guides, uninstall instructions

Captchadecode.com Ads

What is captchadecode[.]com?

Captchadecode[.]com is a rogue website sharing many similar traits with steessay.com, contentgate.xyz, serch, hisurnhuh.com, and thousands of others. This page is designed to present visitors with dubious material and/or redirect them to various sites (likely, unreliable and malicious ones).

Websites of this kind are rarely accessed intentionally. Most users get redirected to them by rogue sites, intrusive adverts, or installed PUAs (Potentially Unwanted Applications). This software can infiltrate devices without user permission, and it typically has harmful abilities.

   
ZEPPELIN Ransomware

What is ZEPPELIN?

Discovered by GrujaRS, ZEPPELIN is a malicious program and a variant of Buran ransomware. Systems infected with this malware have their data encrypted so that the cyber criminals behind the infection can demand payment for decryption tools/software.

During the encryption process, ZEPPELIN appends filenames with a randomized extension, using the hexadecimal numeral system (e.g. ".126-D7C-E67"). For example, "1.jpg" might appear as something similar to "1.jpg.126-D7C-E67", and so on for all affected files. Additionally, it adds filemarkers ("ZEPPELIN") to the encrypted files. After this process is finished, a text file called "!!! ALL YOUR FILES ARE ENCRYPTED !!!.TXT" is stored on the desktop.

   
DesktopInput Adware (Mac)

What is DesktopInput?

DesktopInput is an adware-type app with browser hijacker traits. It operates by delivering intrusive advertisement campaigns and promoting fake search engines through modifications to browser settings. Additionally, such software usually has data tracking abilities.

Due to the questionable methods used to distribute adware and browser hijackers, they are also classified as PUAs (Potentially Unwanted Applications). DesktopInput has been observed being spread via fake Adobe Flash Player updates. It is noteworthy that fraudulent updaters/installers are used to proliferate PUAs and even malware.

   
Hhqa Ransomware

What is Hhqa ransomware?

Belonging to the Djvu ransomware family, Hhqa is a malicious program designed to encrypt data and demand payment for the decryption. In other words, this malware renders files inaccessible, and asks victims to pay - to recover access to their data.

During the encryption process, files are appended with a ".hhqa" extension. For example, a file initially titled something like "1.jpg" would appear as "1.jpg.hhqa", "2.jpg" as "2.jpg.hhqa", "3.jpg" as "3.jpg.hhqa", and so on. Once this process is complete, a ransom note - "_readme.txt" - is created.

   
Steessay.com Ads

What is steessay[.]com?

Steessay[.]com is a deceptive website designed to load dubious content and/or redirect visitors to other pages (likely untrustworthy or malicious ones). The Web is full of such sites, contentgate.xyz, watchvideoplayer.com, darliament.space, and thehugejournal.com - are but some examples.

Users seldom access such webpages intentionally; most get redirected to them by rogue sites, intrusive ads, or installed PUAs (Potentially Unwanted Applications). This software can infiltrate systems and cause redirects, run intrusive advertisement campaigns, and collect browsing-related data.

   
TRUST Ransomware

What is TRUST ransomware?

TRUST is a piece of malicious software belonging to the VoidCrypt ransomware family. It operates by encrypting data in order to demand payment for the decryption. In other words, this ransomware renders files inaccessible and demands a ransom to be paid - to restore access to the data.

During the encryption process, files are renamed following this pattern: original filename, cyber criminals' email address, unique ID assigned to the victim, and ".TRUST" extension. For example, a file initially titled "1.jpg" would appear as something similar to "1.jpg.[getthekey@tutanota.com][MJ-YW2795608314].TRUST". Afterwards, a ransom note titled "Decrypt-me.txt" is dropped onto the desktop.

   
Contentgate.xyz Ads

What is the contentgate[.]xyz site?

Contentgate[.]xyz is a rogue website that shares many similarities with watchvideoplayer.com, thehugejournal.com, catests.space, and countless others. This page operates by loading questionable content and/or redirecting visitors to various sites (likely, unreliable/malicious ones).

Users seldom enter these websites intentionally; most get redirected to them by rogue webpages, intrusive ads, installed PUAs (Potentially Unwanted Applications). These apps can infiltrate systems without explicit consent; hence, users may be unaware of their presence.

   
GameSearchOnline Browser Hijacker

What is GameSearchOnline?

GameSearchOnline is a rogue piece of software, classified as a browser hijacker. It operates by making alterations to browser settings - to promote the gamesearchonline.com fake search engine. Additionally, most browser hijackers collect browsing-related data. Due to the dubious method use to distribute these software products, they are also categorized as PUAs (Potentially Unwanted Applications).

   
CGP Ransomware

What is CGP ransomware?

CGP is the name of a malicious program designed to encrypt data and demand payment for the decryption. In other words, this malware renders affected files inaccessible/unusable, and victims are asked to pay - to recover access/use to their data.

During the encryption process, compromised files are appended with the ".CGP" extension. For example, a file originally named "1.jpg" would appear as "1jpg.CGP", and so on. Following the completion of this process, ransom notes are created/displayed in a pop-up "RESTORE_FILES_INFO.hta" and "RESTORE_FILES_INFO.txt" text file.

   
XLoader Malware

What is XLoader?

XLoader is a piece of malicious software targeting Windows and Mac operating systems (not to be confused with Android OS targeting XLoader malware, discovered in 2019). This program is based on FormBook malware's code and shares many features with it. The primary functionality of XLoader is stealing information.

   

Page 5 of 1322

<< Start < Prev 1 2 3 4 5 6 7 8 9 10 Next > End >>
Malware activity

Global malware activity level today:

Medium threat activity

Increased attack rate of infections detected within the last 24 hours.

Virus and malware removal

This page provides information on how to avoid infections by malware or viruses and is useful if your system suffers from common spyware and malware attacks.

Learn about malware removal