• Home
  • Virus, Spyware, Malware, & PUP Removal Guides
  • Page-ups.com Redirect Image

    Remove the Page-ups.com Redirect

    The Page-ups.com Hijacker is a computer infection that modifies the shortcuts for web browsers installed on the computer so that they automatically open the http://page-ups.com/all/ web page. It does this by changing the shortcut so that they point to a batch file rather than the browser executable. This batch file will then launch the browser with the Page-ups.com page as an argument. ...

  • Startupfraction.com Search Redirect Image

    Remove the Startupfraction.com Search Redirect

    If searches from a browser's address bar or from search engines are being redirected through the site Startupfraction.com, then you most likely have a unwanted browser extension or add on installed. There are some extensions that cause searches to be sent through through Startupfraction.com, which currently redirects to Yahoo.com....

  • Bachbut Extension Image

    Remove the Bachbut Chrome Extension

    Bachbut is a Google Chrome extension that is described as "Whiohoo! Welcome back to Bachbut". This extension causes searches made from the address bar and from search engines to be redirected through another site and eventually will display search results from Yahoo.com. ...

  • Ectodermicyear Extension Image

    Remove the Ectodermicyear Chrome Extension

    Ectodermicyear is a Google Chrome extension that describes itself as "great calendar tool". When installed, though, Ectodermicyear will make it so that any searches made from the address bar and from search engines will be redirected through another site and eventually will display search results from Yahoo.com. ...

  • Rutube Extension Image

    Remove the Rutube Chrome Extension

    RuTube is a Google Chrome extension that is installed by adware bundles and has a description of "Смотри то, что любишь!" . Certain adware bundles are automatically installing this extension on to a computer without a person's permission. ...

  • Microsoft Windows Product Key Tech Support Scam Image

    Remove the Microsoft Windows Product Key Tech Support Scam

    The Microsoft Windows Product Key Tech Support Scam is a Trojan.Tech-Support-Scam that displays a lock screen that blocks you from accessing your Windows desktop. This lock screen pretends to be Windows Defender that asks you to enter your product key in order to unlock the computer. It further states, in very broken English, that the system was locked due to Defender detecting a malicious software on the computer. ...

  • Боковая панель - Комета or Kometa Adware & Browser Image

    Remove the Боковая панель - Комета or Kometa Adware & Browser

    Боковая панель - Комета, or Kometa, is an adware program that adds a docked toolbar on the right side of the Windows desktop that contains links to various Russian sites. When installed, it will also install a custom Chromium browser that will be used by the toolbar to launch the various sites when a user clicks on the button....

  • AE Extension Image

    Remove the AE Chrome Extension

    AE is a Google Chrome extension that is installed by adware bundles. When installed, this extension will track what web sites you visit by connecting to a remote site in Russia everytime you visit a site. This allows the developers to track your surfing habits....

  • WebShield Enter Product Key Tech Support Scam Image

    Remove the WebShield Enter Product Key Tech Support Scam

    The WebShield Enter Product Key Tech Support Scam is a Trojan.Tech-Support-Scam that displays a lock screen that blocks you from accessing your Windows desktop. This lock screen pretends to be something called WebShield that asks you to enter your product key to unlock the computer. It further states, in very broken English, that the system was locked due to detected hacking attempts and that the victim should contact the lis...

  • Универсальный перевод для Extension & Add-On Image

    Remove the Универсальный перевод для Extension & Add-On

    Универсальный перевод для is a Google Chrome extension that describes itself as "Удобный контекстный переводчик выделенного текста", which translates to "Convenient contextual translator of the selected text". While this extension does provide the ability to translate highlighted text, it also tracks what web sites you visit and inject advertisements while br...

  • eTranslator Adware Image

    Remove the eTranslator Adware

    eTranslator is an adware program that installs Chrome, Opera, and Firefox extensions & add-ons that track what sites you visit and inject Russian advertisements into web sites. When eTranslator is installed, it will cause extensions named Универсальный перевод для Chrome 33.3 and Универсальный перевод для FireFox to be installed. These extensions state that they are universal tran...

  • The

    Beware of The Fake "Roboto Condensed" font was not found Pop-Up

    A new attack method discovered by MalwareBreakdown that is being seen on the web is called The Roboto Condensed font was not found pop-up. This popup is part of a social engineering attack that uses javascript to display an alert stating that you are missing a font required to properly view a site....

  • Your Computer May Have a Virus Web Page Image

    Remove the Your Computer May Have a Virus Web Page

    The Your Computer May Have a Virus Popup is a web browser advertisement shown by affiliates promoting the PCKeeper security program. If a user sees this alert they may become concerned that their computer is infected with a virus. This alert is just being shown to scare people into thinking they are infected and that they should download and install PCKeeper....

  • Micro Foundation 7 & Open.exe Miner Trojan Image

    Remove the Micro Foundation 7 & Open.exe Miner Trojan

    The Micro Foundation 7 & Open.exe Miner Trojan is a Trojan that utilizes a victim's computer processor to mine the Monero, or XMR, digital currency. The main executable for this miner is a program called Open.exe. When Open.exe is launched process will then connect to the mining pool at xmr.minercircle.com:80 and utilize all of the processor's power to mine Monero on behalf of the Trojan's developer....

  • SearchAwesome Adware Image

    Remove the SearchAwesome Adware

    SearchAwesome, also known as WajIEnhance or Wajam, is an adware program that displays advertisements on social and shopping sites that you visit. When installed, SearchAwesome will inject ads into various sites that you visit. These ads are inserted into the header of a site and will list similar products that are in the same category as to what you are viewing or searching for on the site....

  • Default-search.net Home Page Image

    Remove the Default-search.net Home Page

    If your browser's homepage has been changed to Default-search.net then you have browser hijacker installed that modifies your browser's configuration. This unwanted program modifies your browser's settings so that it automatically opens the http://www.default-search.net web site....

Login

Remember Me
Sign in anonymously