Step-by-Step Malware Removal Instructions

Youzik.app Ads
Adware

Youzik.app Ads

While inspecting shady sites, our researchers discovered the youzik[.]app website. It operates as a YouTube converter/downloader, i.e., this site allows users to convert video links from this platform into downloadable audio files (MP3 format). Not only does this service break copyright laws, but

Listentoyou.tube Ads
Adware

Listentoyou.tube Ads

Listentoyou[.]tube is a website offering to download music from YouTube in MP3 format. However, it uses rogue advertising networks - it opens various questionable (potentially malicious) pages. It is worth mentioning that pages using the networks mentioned above can display shady advertisements.

CommonOperation Adware (Mac)
Mac Virus

CommonOperation Adware (Mac)

During a routine inspection of new submissions to VirusTotal, our research team found the CommonOperation application. Following our analysis, we determined that this piece of software operates as adware and belongs to the AdLoad malware family. Adware may require certain conditions (e.g

SMSControllo Malware (Android)
Trojan

SMSControllo Malware (Android)

SMSControllo is the name of an Android malware targeting residents of Italy. This malware can steal SMS messages (read and send them to a server controlled by the attackers) and share the infected device's screen. It is likely that threat actors use email attachments or SMS to deliver SMSControllo

Ygvb Ransomware
Ransomware

Ygvb Ransomware

Ygvb is a piece of malicious software classified as ransomware. Our researchers found this program while inspecting new submissions to VirusTotal, and determined that it belongs to the Djvu ransomware family. After being launched onto our test machine, Ygvb encrypted files and appended their file

CapacityMegabyte Adware (Mac)
Mac Virus

CapacityMegabyte Adware (Mac)

CapacityMegabyte is the name of an advertising-supported application that our team has discovered on a deceptive website offering to update the Adobe Flash Player. The purpose of this application is to generate intrusive advertisements. In most cases, apps of this type are promoted and distribut

Freeadvhub.com Ads
Notification Spam

Freeadvhub.com Ads

Freeadvhub[.]com is one of the deceptive pages that use a clickbait technique to get permission to show notifications from visitors. Additionally, it redirects them to other shady pages. Our team has discovered freeadvhub[.]com while visiting sites that use rogue advertising networks (e.g., illega

Nuhb Ransomware
Ransomware

Nuhb Ransomware

We have discovered a new Djvu ransomware variant called Nuhb. It was found while examining malware samples submitted to VirusTotal. While analyzing Nuhb, we learned that it encrypts files and appends the ".nuhb" extension to filenames. Also, it provides a ransom note - it creates a text file named

Dwqs Ransomware
Ransomware

Dwqs Ransomware

Dwqs encrypts files and appends the ".dwqs" extension to filenames. Also, it creates the "_readme.txt" file (a ransom note). Dwqs is ransomware that belongs to the Djvu family. We have discovered this ransomware variant while inspecting malware samples submitted to the VirusTotal page. An example

MajorLauncher Adware (Mac)
Mac Virus

MajorLauncher Adware (Mac)

We have discovered the MajorLauncher application while auditing shady websites offering to install software updates (download a fake Adobe Flash Player installer). While testing the app, we found that it operates as adware - it generates unwanted advertisements. Typically, apps like Majo