Step-by-Step Malware Removal Instructions

Elpy Ransomware
Ransomware

Elpy Ransomware

While conducting regular analysis of malware samples submitted to VirusTotal, we discovered a ransomware variant dubbed Elpy. It belongs to the Phobos family and is designed to encrypt files, modify filenames, and provide two ransom notes. Elpy appends the victim's ID, ambu.lance@tuta.io email add

Ourhugenewz.com Ads
Notification Spam

Ourhugenewz.com Ads

During a routine investigation of dubious sites, our research team discovered ourhugenewz[.]com. Upon inspection, we determined that this is a rogue webpage that promotes browser notification spam and is capable of redirecting visitors to other (likely untrustworthy/dangerous) websites. The major

Colour Cure Browser Hijacker
Browser Hijacker

Colour Cure Browser Hijacker

Our research team found the Colour Cure browser extension during a routine inspection of dubious websites. This piece of software makes changes to browser settings in order to promote (via redirects) the colourcure.xyz illegitimate search engine. Due to this behavior, Colour Cure is classed as a b

The Cryptology Browser Hijacker
Browser Hijacker

The Cryptology Browser Hijacker

The Cryptology browser extension promises to display cryptocurrency price charts that update themselves in real-time. We discovered this piece of software while investigating dubious websites. Our analysis revealed that The Cryptology is a browser hijacker. This extension makes alterations to brow

FormatConnection Adware (Mac)
Mac Virus

FormatConnection Adware (Mac)

During a routine inspection of new submissions to the VirusTotal website, our research team discovered FormatConnection. After analyzing this app, we learned that it is adware belonging to the AdLoad malware family. FormatConnection operates by running intrusive advertisement campaigns.

Oortagle.top Ads
Notification Spam

Oortagle.top Ads

Oortagle[.]top is a rogue webpage that promotes dubious content and spam browser notifications. Additionally, it can redirect users to different (likely unreliable/hazardous) websites. Most visitors to pages like oortagle[.]top enter them via redirects generated by sites using rogue advertising ne

QR Code Search Browser Hijacker
Browser Hijacker

QR Code Search Browser Hijacker

Our researchers discovered the QR Code Search browser extension while investigating suspect websites. Following our examination, we determined that this is browser-hijacking software. It makes alterations to browser settings in order to promote the qrcodeme.xyz fake search engine. QR Code Search a

Shop Assistant Adware
Adware

Shop Assistant Adware

Shop Assistant is a browser extension that promises to add shopping offers to the users' search results. This is a piece of advertising-supported software (adware), and its ads can be displayed on interfaces outside of search engines. Furthermore, this extension collects sensitive user data. Our

Protected Browse Browser Hijacker
Browser Hijacker

Protected Browse Browser Hijacker

Protected Browse is a rogue browser extension that promises to block access to malicious websites. We discovered this piece of software during a routine inspection of untrustworthy sites. Our investigation revealed that Protected Browse modifies browser settings to promote the protectedbrowse.com

Changify Browser Hijacker
Browser Hijacker

Changify Browser Hijacker

While investigating deceptive websites, our research team found the Changify browser extension. It promises to display browser wallpapers. However, after examining this piece of software, we determined that it is a browser hijacker. Changify makes changes to browser settings in order to endorse (