Step-by-Step Malware Removal Instructions

Youfileslock Ransomware
Ransomware

Youfileslock Ransomware

We discovered a new ransomware called Youfileslock while checking the VirusTotal page for the recently submitted samples. Our key findings were that Youfileslock belongs to the MedusaLocker family, encrypts files, appends the ".youfileslock" extension to filenames, and creates the "HOW_TO_RECOVER_

HorizonCentric Adware (Mac)
Mac Virus

HorizonCentric Adware (Mac)

HorizonCentric is a rogue app that our researchers discovered while looking through new submissions to VirusTotal. Our analysis of this piece of software revealed that it operates as adware and belongs to the AdLoad malware family. Advertising-supported software (adware) enables the plac

Fake Coinbase Wallet Extension
Adware

Fake Coinbase Wallet Extension

Fake Coinbase Wallet extension - refers to a rogue browser extension disguised as a Coinbase product. Unwanted software often uses the names, graphics, and other content belonging to legitimate products - in order to trick users into download/installation. Typically, software that uses deceptive

Special-discounts.club Ads
Notification Spam

Special-discounts.club Ads

Special-discounts[.]club is designed to display deceptive content to trick visitors into agreeing to receive notifications. Also, it can redirect visitors to other shady pages. Our team discovered special-discounts[.]club while inspecting torrent sites, illegal movie streaming pages, and similar w

DynamicSync Adware (Mac)
Mac Virus

DynamicSync Adware (Mac)

After downloading and installing the DynamicSync application, we found that it is a useless app that functions as adware. It generates intrusive advertisements. We discovered this adware while examining deceptive pages encouraging visitors to update "outdated" software. We found that Dyn

WANNAFRIENDME 2 Ransomware
Ransomware

WANNAFRIENDME 2 Ransomware

WANNAFRIENDME 2 is ransomware that encrypts files, modifies filenames (appends the ".iRazormind" extension), and drops the "README.txt" file containing a ransom note. Our team discovered this ransomware while inspecting malware samples submitted to VirusTotal. An example of how WANNAFRIENDME 2 re

FormatSync Adware (Mac)
Mac Virus

FormatSync Adware (Mac)

We discovered FormatSync while inspecting shady websites distributing fake Adobe Flash Player installers. After downloading and installing this app, we learned that it displays annoying advertisements. Apps like FormatSync are classified as advertising-supported applications. FormatSync

News-hanuca.cc Ads
Notification Spam

News-hanuca.cc Ads

Our research team found the news-hanuca[.]cc rogue page during a routine inspection of untrustworthy websites. This webpage is designed to promote browser notification spam via deception. Additionally, news-hanuca[.]cc can redirect visitors to other (likely dubious/malicious) sites. Users typical

SIDDHIVINAYAK Email Virus
Phishing/Scam

SIDDHIVINAYAK Email Virus

Our analysis of this "SIDDHIVINAYAK" email revealed that it is malspam - malicious spam designed to infect recipients' systems with malware. These fake finance/purchase-themed letters proliferate the Agent Tesla RAT (Remote Access Trojan). It must be emphasized that, as with all spam emails, thes

Police_Decrypt0r Ransomware
Ransomware

Police_Decrypt0r Ransomware

Discovered by Petrovic, Police_Decrypt0r is a piece of malicious software categorized as ransomware. We ran a sample of this malware on our testing machine, and it encrypted files as well as changed their filenames. The names of the affected files were appended with a ".CRYPT" extension. For exam