Step-by-Step Malware Removal Instructions

Geacon Malware (Mac)
Mac Virus

Geacon Malware (Mac)

Geacon is the name of a malicious program targeting Mac OSes (Operating Systems). Geacon's history begins with the Go programming language implementation of Cobalt Strike – an infamous Windows OS malware. The Go versions had not been previously observed in heavy use for attacks on macOS devices.

Ultimate Basketball Fan Extension Browser Hijacker
Browser Hijacker

Ultimate Basketball Fan Extension Browser Hijacker

Our investigation of the Ultimate Basketball Fan Extension found that it takes over web browsers by modifying their settings. The main purpose of this browser-hijacking extension is to promote a fraudulent search engine called search.basketball-fan.com. Also, it is possible that the Ultimate Baske

RA Group Ransomware
Ransomware

RA Group Ransomware

RA Group is ransomware that encrypts data, modifies filenames, and drops a ransom note. Every attack may involve a unique ransom note ("How To Restore Your Files.txt") tailored specifically for the targeted company or organization. The same may apply to the extension added to the filenames of encr

LoyalShroud Adware (Mac)
Mac Virus

LoyalShroud Adware (Mac)

While inspecting new submissions to the VirusTotal website, our research team discovered the LoyalShroud app. After investigating this application, we determined that it is adware belonging to the AdLoad malware family. Adware stands for advertising-supported software. It operates by run

Impossibility Of Your Transferring Your Funds Email Scam
Phishing/Scam

Impossibility Of Your Transferring Your Funds Email Scam

After examining the "Impossibility Of Your Transferring Your Funds" email, we determined that it is spam. This phishing letter states that the recipient has been sent an ATM card containing 10.5 million US dollars. The lengthy email mentions various real entities to create an impression of legiti

Xaro Ransomware
Ransomware

Xaro Ransomware

Our research team discovered the Xaro ransomware-type program while investigating new submissions to VirusTotal. This program is part of the Djvu ransomware family. After we executed a sample of Xaro on our test machine, it encrypted files and appended their filenames with a ".xaro" extension. To

Ughtsustacheds.com Ads
Notification Spam

Ughtsustacheds.com Ads

Our research team found the ughtsustacheds[.]com rogue page while investigating suspect websites. It is designed to promote dubious content and browser notification spam. Additionally, this site can redirect visitors to other (likely unreliable/malicious) webpages. Users typically access pages li

Reliablepcmatter.com Ads
Notification Spam

Reliablepcmatter.com Ads

After conducting an analysis of reliablepcmatter[.]com, we have determined that it is a deceptive webpage that promotes the "McAfee - Your PC is infected with 5 viruses!" scam. Additionally, we observed that reliablepcmatter[.]com wants to send notifications. Our team came across this website whil

I Will Be Direct You Watch Adult Content Email Scam
Phishing/Scam

I Will Be Direct You Watch Adult Content Email Scam

After examining the "I Will Be Direct You Watch Adult Content" email, we determined that it is used to facilitate a sextortion scam. The spam letter claims that the sender has made a sexually explicit recording of the recipient, which will be sent to their contacts unless a ransom is paid. It mus

Anthem Encrypted Message Email Scam
Phishing/Scam

Anthem Encrypted Message Email Scam

We have examined this email and determined that its purpose is to lure recipients into providing personal information. This email contains an attachment designed to display a fake login form. The letter itself is disguised as a notification from Anthem regarding a payment. Recipients should ignore