Step-by-Step Malware Removal Instructions

Shopping Guide Adware
Adware

Shopping Guide Adware

Discovered by our team while researching deceptive websites, Shopping Guide is an adware-type browser extension. It promises to allow quick access to "the most popular e-commerce company". However, this extension delivers intrusive advertisement campaigns instead. After being successfully

Goldline-updates.com Ads
Notification Spam

Goldline-updates.com Ads

Goldline-updates[.]com is a rogue website promoting browser notification spam and capable of redirecting visitors to other untrustworthy/harmful pages. We discovered this site while researching pages that use rogue advertising networks. Redirects caused by such webpages - are also how most users

WALLET SYNCING POP-UP Scam
Phishing/Scam

WALLET SYNCING POP-UP Scam

Our team has discovered this scam website while analyzing pages that use shady advertising networks. We have examined this page and concluded that it is disguised as a legitimate platform offering to synchronize cryptocurrency wallets with the blockchain. We also found that this site is flagged as

Medusa Trojan (Android)
Trojan

Medusa Trojan (Android)

Medusa is the name of a banking trojan that we have researched and analyzed a sample obtained from VirusTotal. This malware targets Android operating systems; it enables remote access control over infected devices and can extract a wide variety of vulnerable data from them. Initially, Medusa was

Sncip Ransomware
Ransomware

Sncip Ransomware

Sncip is the name of ransomware that we have discovered while checking the VirusTotal page for recently submitted malware samples. Our team has tested Sncip and learned that it encrypts files and appends a string of random characters and the ".sncip" extension to their filenames. Also, it creates

TravelNow Adware
Adware

TravelNow Adware

Discovered by our researchers during a routine inspection of sites that use rogue advertising networks, TravelNow is a rogue application. After analyzing it, we determined that it operates as advertising-supported software (adware). Adware is designed to run intrusive advertising campaigns

Aumcc Ransomware
Ransomware

Aumcc Ransomware

We have examined the Aumcc ransomware and found that it encrypts files, appends a string of random characters and the ".aumcc" extension to filenames, and generates a ransom note (a text file named "3LUo_HOW_TO_DECRYPT.txt"). Our team has discovered Aumcc while checking the malware samples submitt

Thecred.info Ads
Notification Spam

Thecred.info Ads

Thecred[.]info is a deceptive website that we have discovered while testing illegal movie streaming, torrent, and similar sites that use questionable advertising networks. After examining thecred[.]info, we found that the purpose of this site is to get permission to show notifications and redirect

GpCODE Ransomware
Ransomware

GpCODE Ransomware

GpCODE is a malicious program belonging to the Xorist ransomware family, which our researchers found when inspecting new submissions to VirusTotal. On our test system, this ransomware encrypted files and appended the filenames with a ".GpCODE" extension. For example, a file initially titled "1.jp