Step-by-Step Malware Removal Instructions

DarkiTon Adware
Adware

DarkiTon Adware

Our research team discovered the DarkiTon browser extension while investigating suspect websites. This piece of software is promoted as a tool for websites that enables dark mode with a blue light filter. After analyzing this extension, we determined that it is adware with browser hijacker capabi

MediaService Malware
Adware

MediaService Malware

Our assessment reveals that MediaService is a potentially harmful application distributed through a malicious installer. The installation of MediaService occurs simultaneously with various other undesirable components. Users are advised to remove MediaService and all related files as soon as possi

Xro Ransomware
Ransomware

Xro Ransomware

Our researchers found the Xro ransomware while reviewing new malware submissions to the VirusTotal platform. This malicious program is part of the Xorist ransomware family. After we launched a sample of Xro on our test system, it encrypted files and altered their names. Original filenames were ap

Agent Racoon Malware
Trojan

Agent Racoon Malware

Agent Racoon is a malicious program written using the .NET framework. It is classed as a backdoor; malware within this classification is designed to open a "backdoor" into targeted systems. These programs are typically used in the initial phases of multi-stage infections. The first instances of A

DHL Unpaid Duty Email Scam
Phishing/Scam

DHL Unpaid Duty Email Scam

During our evaluation, it has come to light that this email is a fraudulent attempt masquerading as a notification from DHL, a reputable logistics company. The individuals orchestrating this scam intend to deceive recipients into accessing a counterfeit website and divulging personal information.

Elpy Ransomware
Ransomware

Elpy Ransomware

While conducting regular analysis of malware samples submitted to VirusTotal, we discovered a ransomware variant dubbed Elpy. It belongs to the Phobos family and is designed to encrypt files, modify filenames, and provide two ransom notes. Elpy appends the victim's ID, ambu.lance@tuta.io email add

Ourhugenewz.com Ads
Notification Spam

Ourhugenewz.com Ads

During a routine investigation of dubious sites, our research team discovered ourhugenewz[.]com. Upon inspection, we determined that this is a rogue webpage that promotes browser notification spam and is capable of redirecting visitors to other (likely untrustworthy/dangerous) websites. The major

Colour Cure Browser Hijacker
Browser Hijacker

Colour Cure Browser Hijacker

Our research team found the Colour Cure browser extension during a routine inspection of dubious websites. This piece of software makes changes to browser settings in order to promote (via redirects) the colourcure.xyz illegitimate search engine. Due to this behavior, Colour Cure is classed as a b

The Cryptology Browser Hijacker
Browser Hijacker

The Cryptology Browser Hijacker

The Cryptology browser extension promises to display cryptocurrency price charts that update themselves in real-time. We discovered this piece of software while investigating dubious websites. Our analysis revealed that The Cryptology is a browser hijacker. This extension makes alterations to brow

FormatConnection Adware (Mac)
Mac Virus

FormatConnection Adware (Mac)

During a routine inspection of new submissions to the VirusTotal website, our research team discovered FormatConnection. After analyzing this app, we learned that it is adware belonging to the AdLoad malware family. FormatConnection operates by running intrusive advertisement campaigns.