Step-by-Step Malware Removal Instructions

Anedukera.xyz Ads
Notification Spam

Anedukera.xyz Ads

Anedukera[.]xyz is a deceptive website that asks for permission to show notifications and redirects visitors to other pages of this type. We have discovered anedukera[.]xyz while analyzing websites that use rogue advertising networks (display shady ads and open dubious pages). After examin

Ginzo Stealer Malware
Trojan

Ginzo Stealer Malware

Ginzo (also known as ZingoStealer) is the name of an information-stealing malware that steals passwords, cookies, and other information from infected computers. We have found that cybercriminals use Telegram to distribute Ginzo. They offer to download it free of charge. Ginzo steals passwo

Soviet Locker Ransomware
Ransomware

Soviet Locker Ransomware

Soviet Locker ransomware is malware that was discovered by MalwareHunterTeam. It encrypts files and displays a pop-up window with a timer and an input field for entering a decryption password. Cybercriminals behind Soviet Locker do not demand payment. Files encrypted by this malware can be decrypt

Wdlo Ransomware
Ransomware

Wdlo Ransomware

Wdlo is one of the ransomware variants belonging to a ransomware family called Djvu. We have discovered this variant while examining the samples submitted to VirusTotal. After analyzing Wdlo, we have found that it encrypts files, appends its extension (".wdlo") to filenames, and generates a text f

Inancukan.xyz Ads
Notification Spam

Inancukan.xyz Ads

Our researchers found inancukan[.]xyz while inspecting untrustworthy sites. This webpage is designed to promote browser notification spam and redirect visitors to other (likely dubious/malicious) websites. Most users enter pages like inancukan[.]xyz via redirects caused by sites using rogue advert

Explus Ransomware
Ransomware

Explus Ransomware

Explus is a piece of malicious software classified as ransomware. Our researchers found it while inspecting new submissions on VirusTotal. After being launched on our test machine, this ransomware encrypted files and appended their filenames with a ".explus" extension. For example, a file initial

SoftwareHelper Adware (Mac)
Mac Virus

SoftwareHelper Adware (Mac)

SoftwareHelper is an adware-type application that our research team discovered while inspecting new submissions to VirusTotal. This piece of software operates by running intrusive advertisement campaigns (displaying ads), and it can have other harmful functionalities. We also learned that it bel

Separashpar.xyz Ads
Notification Spam

Separashpar.xyz Ads

Separashpar[.]xyz is an untrustworthy web page that uses a clickbait technique to trick visitors into allowing it to show notifications. Also, it redirects visitors to other questionable sites. Our team has discovered separashpar[.]xyz while examining pages that use shady advertising networks.

Korplug Malware
Trojan

Korplug Malware

Korplug (also known as Hodur, PlugX) is the name of the malware that has different variants with different functionalities. Korplug is distributed by a group of cybercriminals known as Mustang Panda. They are known for targeting non-governmental organizations. Korplug is a Remote Access Tr

Dotchaudou.com Ads
Notification Spam

Dotchaudou.com Ads

Dotchaudou[.]com is a rogue webpage that our research team discovered while inspecting questionable sites. It operates by pushing browser notification spam and redirecting visitors to other (likely untrustworthy or malicious) websites. Rogue sites are seldom accessed intentionally. Most users ent