Step-by-Step Malware Removal Instructions

Stealerium Malware
Trojan

Stealerium Malware

Stealerium is the name of an information stealer written in the C# programming language. It sends logs (stolen information) to a Discord channel controlled by the attackers using a webhook. Stealerium malware can extract data, log keystrokes, capture screenshots, and hijack the clipboard.

Prime Adware
Adware

Prime Adware

Prime is the name of a rogue application that we discovered while inspecting deceptive download websites. After analyzing this piece of software, we determined that it operates as advertising-supported software (adware). Additionally, we noted that Prime is practically identical to Healthiness adw

GUCCI Ransomware
Ransomware

GUCCI Ransomware

Our malware researchers have discovered a ransomware variant (belonging to the Phobos family) called GUCCI. It was found while analyzing malware samples submitted to VirusTotal. GUCCI is ransomware that encrypts files, appends the ".GUCCI" extension (and the victim's ID) to filenames, and generate

Xcvf Ransomware
Ransomware

Xcvf Ransomware

Xcvf is a malicious program categorized as ransomware. It is designed to encrypt data and demand ransoms for the decryption. We found Xcvf while inspecting new malware submissions to VirusTotal. Additionally, we determined that this program is part of the Djvu ransomware family. After being launc

InfoMajorSearch Adware (Mac)
Mac Virus

InfoMajorSearch Adware (Mac)

We have discovered the InfoMajorSearch application after downloading a fake Adobe Flash Player installer from a deceptive website. It was found that this application serves annoying advertisements. It functions as adware. Clicking on advertisements displayed by InfoMajorSearch can open s

News-waxawo.com Ads
Notification Spam

News-waxawo.com Ads

While inspecting shady websites, our research team discovered news-waxawo[.]com. This rogue page is designed to push browser notification spam and redirect visitors to different (likely unreliable/malicious) sites. Most visitors to webpages like news-waxawo[.]com access them through redirects caus

Defenceprogramm.com Ads
Notification Spam

Defenceprogramm.com Ads

Defenceprogramm[.]com is a rogue site that our research team found while inspecting deceptive webpages. This page operates by promoting scams, pushing browser notification spam, and redirecting visitors to other (likely untrustworthy/malicious) websites. Users typically enter webpages like defenc

Sijr Ransomware
Ransomware

Sijr Ransomware

Discovered by Petrovic, Sijr is a piece of malicious software belonging to the Djvu ransomware family. We obtained a sample of this ransomware from VirusTotal and executed it on our test machine. Sijr encrypted the files on our test system and appended their filenames with a ".sijr" extension. Fo

Bbnm Ransomware
Ransomware

Bbnm Ransomware

Bbnm is the name of a malicious program categorized as ransomware. We determined that this program belongs to the Djvu ransomware family. After being launched onto our test machine, Bbnm encrypted files and appended their filenames with a ".bbnm" extension. For example, a file originally named "1

3Ex2BJT2aiqDJKPAFeuWMbB4T6MhML384p Clipper Malware
Trojan

3Ex2BJT2aiqDJKPAFeuWMbB4T6MhML384p Clipper Malware

Our team has discovered a clipper malware called 3Ex2BJT2aiqDJKPAFeuWMbB4T6MhML384p while inspecting cracked software download websites. Cybercriminals use this malware to steal Bitcoin cryptocurrency. We also found that the installer containing 3Ex2BJT2aiqDJKPAFeuWMbB4T6MhML384p malware injects a