Step-by-Step Malware Removal Instructions

JanelaRAT Malware
Trojan

JanelaRAT Malware

JanelaRAT is a Remote Access Trojan (RAT). It is a piece of sophisticated malicious software designed to enable remote access and control over compromised machines. JanelaRAT has been observed being implemented in attacks targeting Latin American banking and financial institutions. Based on the u

Taqw Ransomware
Ransomware

Taqw Ransomware

Our researchers found the Taqw ransomware-type program during a routine inspection of new submissions to VirusTotal. This piece of malicious software is part of the Djvu ransomware family. Programs within the ransomware classification are designed to encrypt data and demand payment for its decrypt

Agniane Stealer
Trojan

Agniane Stealer

Agniane is a stealer – a type of malware designed to extract and exfiltrate sensitive information from infected machines. This stealer is heavily focused on stealing cryptocurrency-related data. After infiltrating a system, Agniane begins collecting device data, e.g., device name, CPU, GPU

NightClub Malware
Trojan

NightClub Malware

NightClub is the name of a malware that has spyware and data-stealing capabilities. This program has at least four versions, with the earliest variant dating back to 2014. NightClub malware is used by a threat actor dubbed MoustachedBouncer. This group has been around for nearly a decade and almo

MotionOptimizer Adware (Mac)
Mac Virus

MotionOptimizer Adware (Mac)

We discovered the MotionOptimizer application during a routine investigation of new submissions to the VirusTotal site. Our analysis revealed that this app is advertising-supported software (adware) and that it belongs to the AdLoad malware family. Adware is designed to generate revenue

XI New Tab Browser Hijacker
Browser Hijacker

XI New Tab Browser Hijacker

XI New Tab is a rogue extension promising to display browser wallpapers. Our research team discovered it while investigating untrustworthy websites. After analyzing XI New Tab, we learned that it makes modifications to browser settings in order to promote (through redirects) the xitabs.com fake s

Knight Ransomware
Ransomware

Knight Ransomware

Knight ransomware is the rebrand of Cyclops. Malware within this classification is designed to encrypt files and demand ransoms for their decryption. When we executed a sample of Knight on our test system, it began encrypting files and appended their filenames with a ".knight_l" extension. For ex

Tasa Ransomware
Ransomware

Tasa Ransomware

While inspecting new submissions to the VirusTotal website, our researchers discovered the Tasa malicious program. It is part of the Djvu ransomware family. Programs within this classification operate by encrypting data and making ransom demands for its decryption. After we launched a sample of T

Taoy Ransomware
Ransomware

Taoy Ransomware

Our research team discovered another ransomware from the Djvu family called Taoy during a routine inspection of new submissions to the VirusTotal website. Ransomware is designed to encrypt data and demand payment for its decryption. On our test machine, Taoy encrypted files and appended their tit

MediaScape - New Tab Browser Hijacker
Browser Hijacker

MediaScape - New Tab Browser Hijacker

Our research team found the MediaScape - New Tab browser extension while investigating dubious websites. This extension promises to display browser wallpapers. After analyzing this piece of software, we determined that it is a browser hijacker. MediaScape - New Tab make the changes to browser set