Step-by-Step Malware Removal Instructions

ExtendedLibrary Adware (Mac)
Mac Virus

ExtendedLibrary Adware (Mac)

ExtendedLibrary is an adware-type application with browser hijacker characteristics. This app delivers intrusive advertisements and makes modifications to browsers to promote bogus search engines. Additionally, most adware-type apps and browser hijackers collect browsing-related information. Du

Npph Ransomware
Ransomware

Npph Ransomware

Npph is ransomware belonging to the Djvu ransomware family. It encrypts files, modifies their filenames and creates a ransom message. Note that Npph renames files by appending the ".npph" extension to filenames. For example, it would rename "1.jpg" to "1.jpg.npph", "2.jpg" to "2.jpg.npph", and so

Double Your Bitcoins Scam
Phishing/Scam

Double Your Bitcoins Scam

Criminals behind this scam website attempt to trick visitors into transferring a sum of Bitcoins to them by offering to return ten times the amount to the provided BTC wallet address. Websites of this type (money-swindling schemes) should never be trusted. Note that most users do not visit these

Pro-web.net Ads
Notification Spam

Pro-web.net Ads

pro-web[.]net is one of many untrusted web pages that open other websites of this kind or load dubious content. It is similar to xrclicks[.]xyz, cachenews[.]biz, lastmedias[.]biz and many others. These sites are often opened by web browsers that have potentially unwanted applications (PUAs) instal

Chuk Ransomware
Ransomware

Chuk Ransomware

Discovered by xiaopao, Chuk is a malicious program belonging to the Dharma ransomware family. Systems infected with this malware experience data encryption and users receive ransom demands for decryption. During the encryption process, files are renamed following this pattern: original filename,

Search.standartanalog.com Redirect (Mac)
Mac Virus

Search.standartanalog.com Redirect (Mac)

search.standartanalog.com is a fake search engine. These bogus search tools are usually promoted by browser hijackers. Note that search.standartanalog.com is promoted by adware-type software with browser hijacker traits (e.g. ExtendedProcesser). Fake search engines typically have data tracking c

ExtendedProcesser Adware (Mac)
Mac Virus

ExtendedProcesser Adware (Mac)

ExtendedProcesser functions as a browser hijacker and adware. Depending on the browser, it changes certain browser settings to 0yrvtrh.com or search.standartanalog.com (the address of a fake search engine) and serves various advertisements. It can also access (collect) sensitive information. Co

Xrclicks.xyz Ads
Notification Spam

Xrclicks.xyz Ads

xrclicks[.]xyz displays dubious content or opens other untrusted websites. There are many pages similar to xrclicks[.]xyz including, for example, cachenews[.]biz, lastmedias[.]biz and vinphone[.]xyz. Commonly, they are opened by installed potentially unwanted applications (PUAs). These apps often

Hbdalna Ransomware
Ransomware

Hbdalna Ransomware

Discovered by GrujaRS, Hbdalna is a malicious program belonging to the Snatch ransomware family. Systems infected with Hbdalna ransomware have their data encrypted and users receive ransom demands for decryption tools/software. During the encryption process, all compromised files are appended with

Activation Failed! (Error Code 001) POP-UP Scam
Phishing/Scam

Activation Failed! (Error Code 001) POP-UP Scam

This is a typical technical support scam website used to deceive visitors into calling the provided number and paying for unnecessary services and/or software. Generally, people do not visit these pages intentionally - they are opened through deceptive advertisements, other untrusted websites, or