Step-by-Step Malware Removal Instructions

Reopen Ransomware
Ransomware

Reopen Ransomware

While inspecting new submissions to VirusTotal, our researchers discovered the Reopen ransomware-type program. We also determined that Reopen is part of the VoidCrypt ransomware family. Malware within this classification is designed to encrypt data and demand ransoms for its decryption. After we

ATLANTIS TRANS LOGISTIK Email Virus
Phishing/Scam

ATLANTIS TRANS LOGISTIK Email Virus

We examined this email and uncovered that the sender disguised it as a letter from Atlantis Translogistik, a freight forwarding service company in North Jakarta. Additionally, the email includes two harmful attachments used to distribute malware. Therefore, recipients are advised to ignore the ema

Goba Ransomware
Ransomware

Goba Ransomware

Goba is a ransomware variant that utilizes encryption to lock files, and as part of its process, it adds the ".goba" extension to the filenames of all encrypted files. This malware also creates a ransom note, which is saved as "_readme.txt". Goba is part of the Djvu ransomware family and may be di

Goaq Ransomware
Ransomware

Goaq Ransomware

During our analysis of malware samples submitted to VirusTotal, we came across Goaq, a ransomware belonging to the Djvu family. Goaq encrypts files and adds the ".goaq" extension to the filenames of encrypted files. It also creates a text file called "_readme.txt" that contains a ransom note. As

Gosw Ransomware
Ransomware

Gosw Ransomware

Gosw is a type of ransomware that is part of the Djvu family. When Gosw infects a system, it encrypts files and appends the ".gosw" extension to the file names. It also creates a ransom note in the form of a "_readme.txt" file. Our researchers identified Gosw during an analysis of malware samples

Bizzy Beaver Browser Hijacker
Browser Hijacker

Bizzy Beaver Browser Hijacker

Our research team discovered the Bizzy Beaver browser extension during a routine investigation of untrustworthy sites. It is endorsed as a productivity tool. However, our analysis uncovered that this extension modifies browsers to promote (thorough redirects) the search.bizzy-beaver.com fake searc

MetAI Assistant Adware
Adware

MetAI Assistant Adware

While inspecting deceptive websites, our research team discovered a page promoting an installer containing the MetAI assistant browser extension. It is endorsed as a tool that allows users to employ "OpenAI" (likely the ChatGPT chatbot developed by OpenAI) on the Facebook social networking platfor

Qwik Search Browser Hijacker
Browser Hijacker

Qwik Search Browser Hijacker

Our researchers discovered the Qwik Search browser extension while inspecting rogue websites. This software promises to improve the Web searching experience by allowing easy access to popular search engines. However, our analysis of Qwik Search revealed that it is a browser hijacker. This extensio

ActivityCache Adware (Mac)
Mac Virus

ActivityCache Adware (Mac)

While investigating new submissions to VirusTotal, our research team discovered the ActivityCache app. After inspecting this piece of software, we determined that it operates as adware. Additionally, we learned that this application is part of the AdLoad malware family. Adware stands for

ACCOUNT SHUT-DOWN Email Scam
Phishing/Scam

ACCOUNT SHUT-DOWN Email Scam

Our inspection of the "ACCOUNT SHUT-DOWN" email revealed that it is spam. This letter states that the recipient's email account will be shut down per their request. This spam mail operates as a phishing scam and promotes a fake email sign-in page that records the passwords entered into it.