Step-by-Step Malware Removal Instructions

Xxx-offers.com Ads
Notification Spam

Xxx-offers.com Ads

While investigating untrustworthy websites, our research team discovered the xxx-offers[.]com rogue page. It is designed to push spam browser notifications and redirect visitors to other (likely dubious or malicious) webpages. Most commonly, sites like xxx-offers[.]com are accessed through redire

Parental Control: BlackList Adware
Adware

Parental Control: BlackList Adware

Parental Control: BlackList is a rogue browser extension that our researchers discovered while investigating suspicious sites that promote software. This extension is presented as a parental tool capable of blocking websites based on a created list. However, our analysis revealed the behavior of

Ad-free | best ad blocker Adware
Adware

Ad-free | best ad blocker Adware

Ad-free | best ad blocker is the name of a browser extension that supposedly blocks online advertisements. Ironically, this app generates advertisements. Thus, we classified Ad-free | best ad blocker as adware. Our team discovered this app on a deceptive page that recommended adding it to a browse

HyperBro RAT
Trojan

HyperBro RAT

HyperBro is the name of a Remote Access Trojan (RAT). This type of malware is designed to allow remote access/control over infected machines. RATs are typically highly functional pieces of malicious software capable of causing all sorts of severe issues. It is noteworthy that HyperBro has been us

CovalentStealer Malware
Trojan

CovalentStealer Malware

CovalentStealer is an info-stealing malware that identifies file shares on a system, categorizes the files, and then exfiltrates (uploads) them to a remote server controlled by threat actors. CovalentStealer stores gathered files on OneDrive. It is known that it was used as a payload when targetin

Your Device Apple iPhone Has Been Hacked POP-UP Scam (Mac)
Mac Virus

Your Device Apple iPhone Has Been Hacked POP-UP Scam (Mac)

"Your Device Apple iPhone Has Been Hacked" is a scam that our researchers discovered while inspecting dubious websites. As the name implies, it claims that the visitor's iPhone has been infected and hacked. It must be emphasized that no site can detect such (or other) issues on users' devices -

Cool baro Browser Hijacker
Browser Hijacker

Cool baro Browser Hijacker

Cool baro is a browser extension designed to promote barosearch.com by hijacking a web browser. Barosearch.com is a fake search engine that does not generate its own results. Typically, users download and add browser hijackers to browsers (or install them on computers) inadvertently. Cool

Webregadvertising.com Ads
Notification Spam

Webregadvertising.com Ads

The purpose of webregadvertising[.]com is to trick visitors into allowing it to show notifications. Additionally, it redirects them to other websites. Our team encountered webregadvertising[.]com while examining other websites that use rogue advertising networks. It is uncommon for pages like webr

Tohj Ransomware
Ransomware

Tohj Ransomware

Our researchers discovered yet another malicious program - Tohj - belonging to the Djvu ransomware family while inspecting new submissions to VirusTotal. Ransomware encrypts data and demands payment for decryption. Once we executed a sample of Tohj on our test system, it began encrypting files. T

Oneqanatclub.com Ads
Notification Spam

Oneqanatclub.com Ads

While analyzing oneqanatclub[.]com, we learned that it requests visitors to pass a fake CAPTCHA (it shows deceptive content to lure visitors into agreeing to receive notifications). It also redirects visitors to other websites of this type. Our team discovered oneqanatclub[.]com while inspecting w