Step-by-Step Malware Removal Instructions

Library Games Adware
Adware

Library Games Adware

We have discovered the Library Games application after downloading and using a malicious installer. After testing Library Games, we found that it shows intrusive advertisements. Thus, we classified Library Games as adware. This app runs in the Task Manager as Library Games 1.1. Advertiseme

Tanki X Ransomware
Ransomware

Tanki X Ransomware

Tanki X is ransomware - malware that blocks access to files by encrypting them. Also, Tanki X appends ".TANKIX" extension to filenames, drops the "READ_ME.txt" file, and displays a pop-up window. Its text file and pop-up window contain a ransom note. An example of how Tanki X renames files: it cha

Desktopanalyticscenter.site Ads
Notification Spam

Desktopanalyticscenter.site Ads

Desktopanalyticscenter[.]site is the address of a rogue page that we discovered while investigating untrustworthy websites. This site runs scams, promotes spam browser notifications, and redirects visitors to different (likely unreliable/harmful) webpages. Most users access pages like desktopanal

Page Downloader Adware
Adware

Page Downloader Adware

While inspecting suspicious websites, our researchers discovered the Page Downloader browser extension. It is presented as a tool capable of converting webpage content into a single downloadable text file. However, our investigation of Page Downloader revealed that it is adware. Advertisin

Upsilon Ransomware
Ransomware

Upsilon Ransomware

Our researchers found the Upsilon ransomware-type program while inspecting new submissions to VirusTotal. It operates by encrypting data in order to demand payment for decryption. On our testing system, Upsilon encrypted files and appended their filenames with a ".upsil0n" extension. For example,

Browser-Security Browser Hijacker
Browser Hijacker

Browser-Security Browser Hijacker

While investigating sites that use rogue advertising networks, our researchers found one endorsing the Browser-Security browser extension. After inspecting it, we determined that this piece of software operates as a browser hijacker. Browser-Security makes changes to browser settings in order to

KoRyA Ransomware
Ransomware

KoRyA Ransomware

KoRyA is the name of ransomware belonging to the Xorist family. Our malware researchers discovered KoRyA while examining samples submitted to VirusTotal. We learned that KoRyA encrypts data, appends the ".KoRyA" extension to filenames, changes the desktop wallpaper, creates the "HOW TO DECRYPT FIL

Bettercallsaul Ransomware
Ransomware

Bettercallsaul Ransomware

Bettercallsaul is a ransomware-type program that our researcher team discovered while inspecting new submissions to VirusTotal. After being executed on our test machine, this malicious program encrypted files and appended their names with a ".bettercallsaul" extension. To elaborate, a filename su

Zouu Ransomware
Ransomware

Zouu Ransomware

While examining malware dubbed Zouu, we found that it is ransomware that encrypts files and appends the ".zouu" extension to filenames. Also, Zouu creates the "_readme.txt" file (a ransom note). An example of how Zouu renames files: it changes "1.jpg" to "1.jpg.zouu", "2.png" to "2.png.zouu", and

Unknown Browser Login Email Scam
Phishing/Scam

Unknown Browser Login Email Scam

Our inspection of the "Unknown Browser Login" email revealed that it is spam operating as a phishing scam. It is presented as an email account security notification alerting the recipient that there has been a suspicious log-in. This spam mail aims to extract users' email account passwords through