Step-by-Step Malware Removal Instructions

Readnet Ransomware
Ransomware

Readnet Ransomware

Readnet is ransomware that our team discovered while inspecting malware samples submitted to the VirusTotal page. We found that Readnet is part of the MedusaLocker ransomware family. The purpose of ransomware is to encrypt files. Also, Readnet renames files by appending the ".Readnet7" extension t

Correos Email Scam
Phishing/Scam

Correos Email Scam

After examining this email, we found that the scammers behind it pretend to be a state-owned company that provides postal service in Spain. The email is written in Spanish. Scammers use it to trick recipients into opening a fake Correos website and providing sensitive information. The email is wri

DockMode Adware (Mac)
Mac Virus

DockMode Adware (Mac)

DockMode is an adware-type application that our researchers discovered during a routine inspection of new submissions to VirusTotal. We learned that this app belongs to the AdLoad malware family. Our analysis revealed that this piece of software runs intrusive advertisement campaigns and may ha

EditWave Adware (Mac)
Mac Virus

EditWave Adware (Mac)

While examining deceptive websites (fake installers downloaded from them) we found an application called EditWave. It is unlikely that user would install this software on purpose. We found that EditWave an advertising-supported application - it bombards users with intrusive advertisements.

Po Ransomware
Ransomware

Po Ransomware

Po is ransomware belonging to the Dharma family. We discovered this ransomware while analyzing malware samples submitted to the VirusTotal website. Po encrypts files, appends the victim's ID, recovery2022@tutanota.com email address, and ".Po" extension to filenames. Also, it provides two ransom no

Ads4pc.com Ads
Notification Spam

Ads4pc.com Ads

During a routine inspection of untrustworthy sites, our researchers found the ads4pc[.]com rogue webpage. It operates by pushing browser notification spam and redirecting visitors to other (likely unreliable/harmful) websites. Most users enter these pages through redirects caused by sites using ro

Style Flex Adware
Adware

Style Flex Adware

Our researchers discovered a rogue browser extension named style flex while inspecting dubious download webpages. This piece of software promises to allow users to modify website content alignment (i.e., left, right, center, etc.). However, our analysis revealed that it operates as advertising-sup

Root (Chaos) Ransomware
Ransomware

Root (Chaos) Ransomware

While inspecting new submissions to VirusTotal, our research team discovered yet another ransomware - called Root - based on Chaos. We executed a sample of Root (Chaos) ransomware on our test machine, and it began encrypting files. The filenames of the affected files were appended with the ".Root

M&T Bank Email Scam
Phishing/Scam

M&T Bank Email Scam

Our inspection of the "M&T Bank" email revealed that it is spam that operates as a phishing scam. This fake letter is presented as a payment notification from the M&T Bank - a legitimate bank holding company. However, users are redirected to a fraudulent banking website when they attempt

Personal-scan.com Ads
Notification Spam

Personal-scan.com Ads

Personal-scan[.]com is one of the deceptive websites operated by affiliates who aim to collect illegitimate commissions. After examining this site, we found that it displays deceptive content (a scam similar to "McAfee - Your PC is infected with 5 viruses!") to promote legitimate software. Also,