Step-by-Step Malware Removal Instructions

OBSIDIAN ORB Ransomware
Ransomware

OBSIDIAN ORB Ransomware

While reviewing new submissions to VirusTotal, our researchers discovered yet another malicious program based on the Chaos ransomware – called OBSIDIAN ORB. Malware within this classification is designed to encrypt data and demand ransoms for its decryption. On our testing system, OBSIDIAN ORB ra

Guerilla Malware (Android)
Trojan

Guerilla Malware (Android)

Guerilla is the name of a malware that targets Android devices. Previous iterations of this malicious software operated predominantly as adware. Specifically, the program functioned by stealthily clicking advertisements – thus generating revenue for its developers via affiliate programs and simila

Newsfeedhome.com Ads
Notification Spam

Newsfeedhome.com Ads

After analyzing newsfeedhome[.]com, our team discovered that the website employs a deceptive tactic by displaying a misleading message to manipulate visitors into granting permission for notifications. Additionally, newsfeedhome[.]com redirects users to other websites that employ clickbait techniq

Sembilme.com Ads
Notification Spam

Sembilme.com Ads

In our examination of websites employing deceitful advertising networks, we encountered sembilme[.]com, a deceptive website. Users who visit this site are confronted with misleading information (a fake CAPTCHA), aiming to deceive them into accepting notifications. Moreover, accessing sembilme[.]co

Itlock (MedusaLocker) Ransomware
Ransomware

Itlock (MedusaLocker) Ransomware

Itlock is one of the ransomware variants belonging to the MedusaLocker family. Our malware researchers discovered it while checking the VirusTotal page for recently submitted samples. Itlock encrypts files, appends the ".itlock20" extension to filenames (the number in the extension can vary), and

Post And Search Browser Hijacker
Browser Hijacker

Post And Search Browser Hijacker

Our research team discovered the Post and Search browser extension during a routine investigation of dubious websites. After we analyzed this extension, we determined that it is a browser hijacker. Post and Search makes modifications to browser settings in order to cause redirects to the find.tnav

Galaxy Search Browser Hijacker
Browser Hijacker

Galaxy Search Browser Hijacker

While investigating suspicious sites, our research team discovered the Galaxy Search browser extension. It is endorsed as an extension that displays galaxy/space themed browser wallpapers. However, Galaxy Search operates as a browser hijacker, i.e., it alters browser settings to promote (via redir

Mailbox Failed To Receive New Messages Email Scam
Phishing/Scam

Mailbox Failed To Receive New Messages Email Scam

Our inspection of the "Mailbox Failed To Receive New Messages" email revealed that is spam. This letter falsely claims that incoming messages are failing to reach the recipient's inbox. Hence, by attempting to rectify this nonexistent issue, users are tricked into providing their email account log

Offx Stealer
Trojan

Offx Stealer

Offx is an information-stealing malware that is coded using the Python programming language. It is commonly distributed through deceptive websites that pretend to be legitimate download sites for video editing software. This malware is designed to capture sensitive data, including passwords, cooki

Butteraalsofour.xyz Ads
Notification Spam

Butteraalsofour.xyz Ads

Our research team discovered the butteraalsofour[.]xyz rogue webpage while investigating suspicious sites. It is designed to endorse browser notification spam and redirect visitors to other (likely unreliable/hazardous) sites. Users typically enter pages like butteraalsofour[.]xyz via redirects c