Step-by-Step Malware Removal Instructions

Retro Search New Tab Browser Hijacker
Browser Hijacker

Retro Search New Tab Browser Hijacker

During our analysis of the Retro Search New Tab browser extension, our team observed that it alters specific web browser settings with the intention of promoting a fake search engine, retro-search.com. Applications displaying such conduct are commonly referred to as browser hijackers. Retr

Rtg Ransomware
Ransomware

Rtg Ransomware

During a routine inspection of new submissions to the VirusTotal site, our researchers discovered the Rtg ransomware-type program. It is part of the Xorist ransomware family. This malicious program encrypts data and demands ransoms for its decryption. On our test machine, Rtg ransomware encrypted

!!Dridex007!! Malware Detected POP-UP Scam
Phishing/Scam

!!Dridex007!! Malware Detected POP-UP Scam

During our examination of this page, we discovered that it hosts a technical support scam, displaying deceptive pop-up messages to mislead visitors into thinking their computers are infected. It is crucial to avoid interacting with such sites as they are designed to deceive users. Usually, users a

Popn Ransomware
Ransomware

Popn Ransomware

During our analysis of samples on VirusTotal, our team discovered a new variant of the Djvu ransomware family named Popn. This particular variant encrypts data and adds the ".popn" extension to the affected files. Also, the ransomware generates a ransom note called "_readme.txt". Popn utilizes a

X Ransomware
Ransomware

X Ransomware

X is ransomware that encrypts files, creates a ransom note ("X-Help.txt"), and renames files (appends the ".X" extension to filenames). Cybercriminals use this malware to extort money from victims. An example of how X modifies filenames: it renames "1.jpg" to "1.jpg.X", "2.png" to "2.png.X", and s

CherryBlos Malware (Android)
Trojan

CherryBlos Malware (Android)

CherryBlos is the name of a malware targeting Android operating systems. This malicious program is classified as a stealer and a clipper. It operates by extracting/exfiltrating cryptowallet credentials and rerouting cryptocurrency transactions to wallets owned by the attackers. At least four fake

CloudConnectors Adware (Mac)
Mac Virus

CloudConnectors Adware (Mac)

Upon reviewing CloudConnectors, our team concluded that its main purpose is to present intrusive advertisements to users, classifying it as adware. Notably, applications like CloudConnectors are often downloaded and installed without users' awareness. Thus, it is recommended not to trust such ap

CreativeApply Adware (Mac)
Mac Virus

CreativeApply Adware (Mac)

While checking out new submissions to VirusTotal, our research team discovered the CreativeApply app. Our analysis of this piece of software revealed that it is adware. Additionally, we learned that CreativeApply is part of the AdLoad malware family. Adware stands for advertising-support

CorporateGlobe Adware (Mac)
Mac Virus

CorporateGlobe Adware (Mac)

CorporateGlobe is an adware-type application discovered by our researchers during a routine inspection of new submissions to the VirusTotal website. This app is part of the AdLoad malware family. It operates by running intrusive advertisement campaigns, i.e., CorporateGlobe's goal is to feed use

OuterSource Adware (Mac)
Mac Virus

OuterSource Adware (Mac)

OuterSource is a rogue app that we discovered while investigating new submissions to the VirusTotal website. Our analysis of this application revealed that it is advertising-supported software (adware). OuterSource is part of the AdLoad malware family. Adware is designed to display adver