Step-by-Step Malware Removal Instructions

DENO Ransomware
Ransomware

DENO Ransomware

Our researchers discovered the DENO ransomware while inspecting new submissions to VirusTotal. We determined that this malicious program is based on the CONTI ransomware. After we executed a sample of DENO on our test system, it encrypted files and appended their filenames with a ".DENO" extensio

Warlocks Ransomware
Ransomware

Warlocks Ransomware

While inspecting new submissions to VirusTotal, our research team found yet another ransomware-type program based on Chaos ransomware. This malicious program is called Warlocks, and we released a sample of it on our test system. Afterward, this ransomware encrypted files and appended their filena

Videoplay-on.com Ads
Notification Spam

Videoplay-on.com Ads

While inspecting dubious websites, our researchers discovered the videoplay-on[.]com rogue webpage. It promotes spam browser notifications and redirects users to other (likely untrustworthy and malicious) sites. Most users enter websites of this type through redirects caused by pages using rogue a

MinimalLight Adware
Adware

MinimalLight Adware

Our team has discovered MinimalLight application on a deceptive website claiming that it might be required to add this app to a web browser. After examination, we found that MinimalLight generates advertisements (it functions as adware). It is described as an app providing a dark mode for simple p

Pick Tail Browser Hijacker
Browser Hijacker

Pick Tail Browser Hijacker

Pick Tail is a rogue browser extension that we discovered while inspecting dubious download webpages. After analyzing this piece of software, we determined that it operates as a browser hijacker. Pick Tail alters browser settings to promote the tailsearch.com fake search engine. Additionally, this

Coper Banking Trojan (Android)
Trojan

Coper Banking Trojan (Android)

Coper is the name of an Android banking Trojan. Our malware researchers discovered that Coper is linked to another Android malware called ExoBotCompat (a reformed version of Exobot). It targets various banking apps. We found that Coper impersonates various banking and utility apps (it uses them as

Lloo Ransomware
Ransomware

Lloo Ransomware

Lloo is the name of a malicious program within the ransomware classification, which our researchers discovered while inspecting new malware submissions to VirusTotal. Lloo is yet another program belonging to the Djvu ransomware family. After executing a sample of Lloo on our test machine, we lear

Message Failure Receiving Notice Email Scam
Phishing/Scam

Message Failure Receiving Notice Email Scam

After inspecting this email we found that it is a phishing email containing a link that opens a deceptive website asking to provide login credentials. This email is disguised as a letter from an email service provider. It states that incoming messages have been suspended. This email claims

Llee Ransomware
Ransomware

Llee Ransomware

During a routine inspection of new submissions to VirusTotal, our research team discovered the Llee ransomware-type program. We determined that Llee is part of the Djvu ransomware family. Once we launched a sample of Llee on our test machine, it encrypted files and appended their filenames with a

Lltt Ransomware
Ransomware

Lltt Ransomware

Lltt is ransomware that belongs to the Djvu ransomware family. We discovered it while analyzing malware samples submitted to the VirusTotal site. Lltt encrypts files and appends the ".lltt" extension to their filenames. It also creates a ransom note (the "_readme.txt" file). An example of how Llt