Virus and Spyware Removal Guides, uninstall instructions

TiktokSearches Browser Hijacker

What is TiktokSearches?

TiktokSearches is a browser hijacker which assigns certain browser settings to tiktok-searches.com, the address of a fake search engine. It is also very likely to gather browsing-related and/or other information. Users often download and install apps such as TiktokSearches inadvertently and, therefore, they are categorized as potentially unwanted applications (PUAs).

   
Professeur Ransomware

What is the Professeur ransomware?

Professeur is malicious software belonging to the Jigsaw ransomware family. It is designed to encrypt the data of infected systems in order to demand payment for decryption. During the encryption process, all compromised files are appended with the ".Professeur" extension.

For example, a file originally named something like "1.jpg" would appear as "1.jpg.Professeur" following encryption. After this process is complete, a pop-up window is displayed containing the ransom-demand message. Note that Professeur ransomware can be decrypted with free decryption software developed by Emsisoft.

   
Search4Moviex Browser Hijacker

What is Search4Moviex?

Search4Moviex is a browser hijacker, and promoted as a tool for easy access to cinema-related content. It can allegedly provide information concerning actors, directors, movies and so on. After successful installation, Search4Moviex changes certain browser settings to promote blpsearch.com, a fake search engine.

Additionally, it has data tracking abilities, which it employs to monitor users' browsing activity. Due to its dubious proliferation methods, Search4Moviex is also classified as a Potentially Unwanted Application (PUA).

   
Kupidon Ransomware

What is Kupidon?

Discovered by MalwareHunterTeam, Kupidon is malicious software that is classified as ransomware. This malware encrypts data in order to demand ransoms for decryption tools. During the encryption process, all files are appended with the ".kupidon" extension.

For example, a file originally named something like "1.jpg" would appear as "1.jpg.kupidon" following encryption. After this process is complete, a ransom message within the "!KUPIDON_DECRYPT.TXT" file is dropped into every affected folder.

   
PGP Ransomware

What is PGP?

PGP is malicious software, which is part of the Dharma ransomware family. This malware is designed to encrypt data and demand ransoms for decryption tools. During the encryption process, all affected files are renamed following this pattern: original filename, unique ID assigned to the victims, cyber criminals' email address and the ".pgp" extension.

For example, a file like "1.jpg" would appear as something similar to "1.jpg.id-1E857D00.[openpgp@foxmail.com].pgp" after encryption. Once this process is complete, ransom messages are created in a pop-up window and "FILES ENCRYPTED.txt" text file.

   
Mybrowser-search.com Redirect

What is mybrowser-search.com?

mybrowser-search.com is a dubious website classified as a fake search engine. These bogus search engines are typically endorsed as useful tools, which provide improved search results, increase browsing security, etc., however, they are seldom capable of providing useful results and often monitor users' browsing activity.

They are promoted by unwanted extensions called browser hijackers. This software makes modifications to browser settings, restricts/denies access to them, and gathers browsing-related information.

   
Holy Bible Daily Browser Hijacker

What is Holy Bible Daily?

Holy Bible Daily is a typical browser hijacker, which promotes the address of a fake search engine (holybibledaily.com) by modifying certain browser settings. This app might also be designed to collect data relating to users' browsing habits.

In any case, apps such as Holy Bible Daily are categorized as potentially unwanted applications (PUAs), since users tend download and install them inadvertently. Research shows that Holy Bible Daily is installed with another PUA called Protect My Search Daily.

   
CreativeSearch Adware (Mac)

What is CreativeSearch?

CreativeSearch is a potentially unwanted application (PUA) that operates as adware and a browser hijacker. It feeds users with various advertisements and changes browser settings so that people are forced to visit the address of a fake search engine. CreativeSearch might also be designed to collect various user-system information.

It is categorized as PUA, since users often download and install adware and browser hijackers unintentionally. Research shows that developers use a deceptive Adobe Flash Player installer to distribute CreativeSearch.

   
ElementaryDataSearch Adware (Mac)

What is ElementaryDataSearch?

ElementaryDataSearch is a rogue application classified as adware and possessing browser hijacker characteristics. Following successful infiltration, this app delivers intrusive ad campaigns, modifies browser settings and promotes a bogus search engine. Adware and browser hijackers typically monitor users' browsing activity.

Due to the dubious techniques used to proliferate ElementaryDataSearch, it is classified as a Potentially Unwanted Application (PUA). One of these dubious distribution methods is via fake Adobe Flash Player updates. Note that software updaters/installers are used to distribute Trojans, ransomware and other malware, as well as PUAs.

   
WELL Ransomware

What is WELL?

WELL is one of many malicious programs that are part of the Dharma ransomware family. It encrypts data, changes the names of all encrypted files, displays a pop-up window containing a ransom message and creates another in a text file.

WELL renames all encrypted files by adding the victim's ID, mewellwisher@protonmail.ch email address, and appending the ".WELL" extension to filenames.

For example, it might rename "1.jpg" to "1.jpg.id-1E857D00.[mewellwisher@protonmail.ch].WELL", "2.jpg" to "2.jpg.id-1E857D00.[mewellwisher@protonmail.ch].WELL", and so on. It also creates a text file named "FILES ENCRYPTED.txt".

   

Page 1342 of 2329

<< Start < Prev 1341 1342 1343 1344 1345 1346 1347 1348 1349 1350 Next > End >>
About PCrisk

PCrisk is a cyber security portal, informing Internet users about the latest digital threats. Our content is provided by security experts and professional malware researchers. Read more about us.

Malware activity

Global malware activity level today:

Medium threat activity

Increased attack rate of infections detected within the last 24 hours.

Virus and malware removal

This page provides information on how to avoid infections by malware or viruses and is useful if your system suffers from common spyware and malware attacks.

Learn about malware removal