Step-by-Step Malware Removal Instructions

VectorPathCorner Adware (Mac)
Mac Virus

VectorPathCorner Adware (Mac)

VectorPathCorner is the name of an advertising-supported application discovered by our team while inspecting shady websites offering to update installed software. The purpose of this app is to generate annoying advertisements. Most of the apps of this type are promoted and distributed using dece

Youconvert.net Ads
Adware

Youconvert.net Ads

Youconvert[.]net is an online converter allowing to download YouTube videos in MP3 format. After testing this page, we found that it can lead to shady websites and display unwanted notifications. This page uses rogue advertising networks (has questionable ads on it and redirects to other pages) an

VideoSearches Browser Hijacker
Browser Hijacker

VideoSearches Browser Hijacker

VideoSearches is the name of a browser hijacker designed to promote video-searches.com - a fake search engine. It hijacks a web browser by changing its settings. Our team has found VideoSearches on a shady website. Like most apps of this type, VideoSearches is promoted and distributed using decept

Go Dark Browser Hijacker
Browser Hijacker

Go Dark Browser Hijacker

While inspecting deceptive download sites, our research team found the go dark browser extension. After analyzing this piece of software, we learned that go dark operates as a browser hijacker promoting the getsins.com fake search engine. Following the successful installation of go dark on

DHL Air Waybill Email Virus
Phishing/Scam

DHL Air Waybill Email Virus

Following our inspection of the "DHL Air Waybill" email, we determined that it is spam intended to infect the recipient's device with malware. This scam email is disguised as a message from the DHL logistics company - regarding a shipment. The file attached to this letter is designed to infect sy

Pterodo Malware
Trojan

Pterodo Malware

Pterodo is a malicious program actively used in geopolitically-motivated cyber attacks against Ukraine. This malware has been linked to the Russian-based espionage group named Shuckworm (also known as Armageddon and Gamaredon). This group has targeted Ukraine almost exclusively since 2014. Pterod

Greenconvert.net Ads
Adware

Greenconvert.net Ads

Greenconvert[.]net is a website offering to download videos from YouTube and convert them to MP3 files (save videos in audio format). It is worth mentioning that it is not entirely legal to download videos from YouTube. Another issue with the greenconvert[.]net page is that it uses rogue advertisi

L3MON RAT (Android)
Trojan

L3MON RAT (Android)

L3MON is an Android malware with a remote administration Trojan (RAT) functionality. It misuses the Accessibility services to steal sensitive information and perform other actions. We have discovered L3MON RAT while inspecting a trojanized Sathi Chat app that impersonates tje Crazy Talk messaging

000 Stealer Malware
Trojan

000 Stealer Malware

While inspecting malware selling hotspots, our researchers discovered a malicious program named 000. It is a stealer-type malware designed to exfiltrate and extract a wide variety of sensitive data from infected machines. The 000 Stealer can download files, obtain system and user data, and

AstraLocker 2.0 Ransomware
Ransomware

AstraLocker 2.0 Ransomware

AstraLocker 2.0 is a ransomware variant belonging to the Babuk family. We have found it while checking the VirusTotal page for recently submitted malware samples. AstraLocker 2.0 encrypts files and appends ".AstraLocker" or ".Astra" (depending on the variant) extension to filenames. Also, it creat