Step-by-Step Malware Removal Instructions

SaintStealer Malware
Trojan

SaintStealer Malware

During our routine malware research, we discovered an information stealer called SaintStealer. We found that this information-stealing malware targets credentials and system information. All gathered information is sent to a Command and Control server. SaintStealer is written in the C# programming

Webnotificationservices.com Ads
Notification Spam

Webnotificationservices.com Ads

Webnotificationservices[.]com is a rogue webpage that our research team discovered while inspecting untrustworthy sites. It is designed to push browser notification spam and redirect visitors to other (likely unreliable/malicious) websites. Most users enter such webpages via redirects caused by si

The List Of The Problem Email Virus
Phishing/Scam

The List Of The Problem Email Virus

We have examined this email and found that cybercriminals use it to deliver malware. Their goal is to trick recipients into opening the attachment (a malicious file). We are not certain what malware threat actors behind this malspam campaign are distributing, but there is reason to believe it is A

Quick Baro Browser Hijacker
Browser Hijacker

Quick Baro Browser Hijacker

We have discovered the Quick Baro application after downloading it from a deceptive website. We learned that after the installation, Quick Baro hijacks a web browser by changing its settings. This app promotes barosearch.com - a fake search engine. Quick Baro forces users to visit barosear

ZxxZ Trojan
Trojan

ZxxZ Trojan

ZxxZ is the name of a malicious program classified as a trojan. This malware is capable of infiltrating additional malicious software into systems. Hence, the threats posed by ZxxZ infections may be particularly broad. It is noteworthy that this trojan has been observed being actively spread via e

Matamoe Ransomware
Ransomware

Matamoe Ransomware

Matamoe is ransomware that we discovered while checking the VirusTotal page for recently submitted malware samples. It was found that Matamoe encrypts files, appends the ".matamoe" extension to filenames, changes the desktop wallpaper, and creates the "read_THIS.txt" file (a ransom note). An exam

OriginalScheduler Adware (Mac)
Mac Virus

OriginalScheduler Adware (Mac)

Our researchers discovered OriginalScheduler during a routine inspection of new submissions to VirusTotal. After analyzing this application, we learned that it operates as advertising-supported software (adware) and belongs to the AdLoad malware family. Adware enables the placement of ad

OnlineClient Adware (Mac)
Mac Virus

OnlineClient Adware (Mac)

OnlineClient is an advertising-supported application. The purpose of this app is to generate annoying advertisements. Our team has discovered OnlineClient while examining deceptive websites. Typically, apps of this type are promoted and distributed using deceptive methods. Clicking on ad

Dfwe Ransomware
Ransomware

Dfwe Ransomware

We discovered Dfwe while examining malware samples submitted to VirusTotal. It is ransomware - malware that encrypts files and demands payment for their decryption. Dfwe appends the ".dfwe" extension to filenames and creates the "_readme.txt" file (a ransom note). We also found that Dfwe is part o

Primerewardz.com Ads
Notification Spam

Primerewardz.com Ads

Primerewardz[.]com is a shady website that asks for permission to show notifications and redirects to a scam website (and possibly other untrustworthy pages). Our team discovered it during an analysis of pages that use rogue advertising networks (e.g., illegal movie streaming pages, torrent sites)