Home > Berta Bilbao

Author Archive: Berta Bilbao - Page 37

Berta is a dedicated malware researcher, dreaming for a more secure cyber space. Her fascination with IT security began a few years ago when a malware locked her out of her own computer.

THREAT REMOVAL
stf-gotosearch-ru-browser-hijacker-go-to-search-redirect-main-site-page

Gotosearch.ru Redirect Removal

Gotosearch.ru is a page redirect which also has browser hijacking capabilities. The hijacker can alter browser defaults, such as the homepage, search engine, and new tab setting. After you make a search inquiry, the redirect filters your search and all…

THREAT REMOVAL
stf-myweb-house-redirect-my-web-house-browser-hijacker-main-domain

Remove Myweb.house Redirect

Myweb.house is a website serving as a search engine for a browser hijacker. That hijacker uses sponsored advertisements and similar content which is displayed whenever you use the services of Myweb.house, click on a link or a search bar. The…

THREAT REMOVAL
stf-angela-merkel-ransomware-virus-main-lockscreen

Remove Angela Merkel Virus and Restore .angelamerkel Files

Angela Merkel is now also the name of a ransomware cryptovirus. 1200 euros are demanded as payment for decrypting your files. The payload of this ransomware is masked as an updater for the Google Chrome browser. This virus will encrypt…

THREAT REMOVAL
stf-crypton-ransomware-virus-ransom-message-english-note

Remove Crypton Ransomware and Restore _crypt Files

Crypton ransomware is the newest bilingual cryptovirus that has been found. Malware researchers from the MalwareHunterTeam have made the discovery. The payload of the virus tries to trick users that it is WinRar. The virus will encrypt your files and…

THREAT REMOVAL
stf-karma-ransomware-virus-total-detections-signature-name-windows-tuneup

Karma Ransomware Removal – Restore Your Files (January 2017 Update)

A malware researcher has recently discovered the Karma ransomware cryptovirus. Apparently, the virus pretends to be a tool that is a tune up utility for Windows and is spread as freeware. The virus will encrypt your files and display a…

THREAT REMOVAL
stf-amisites-com-browser-hijacker-redirect-main-site-page

Remove Amisites.com Redirect

Amisites.com is a website redirect and serves as a search engine for a browser hijacker. This hijacker utilizes sponsored advertisements and similar content that are displayed whenever you use the Amisites.com services. The hijacker can replace the homepage, new tab,…

THREAT REMOVAL
stf-wickedlocker-ransomware-wicked-locker-virus-hiddentear-ransom-message-window-2

Remove WickedLocker Virus and Restore .locked Files

WickedLocker is the name of a new ransomware cryptovirus based on the open-source HiddenTear project. All encrypted files will have the extension .locked appended to them. After it locks your files it demands 1 Bitcoin as payment. To see how…

THREAT REMOVAL
stf-slither-io-slithermon-adware-ads-main-site-page

Slither.io Adverts Removal

Slither.io is an online gaming platform. The website hosts a game of Snake that runs on the Adobe Flash Player or HTML5. The game is called Slithermon. The platform is considered adware because it can be installed under the pretense…

THREAT REMOVAL
stf-search-clearch-org-redirect-browser-hijacker-netspark-net-spark-main-site-page

Remove Search.clearch.org Redirect

Search.clearch.org is a redirect and a search engine for a browser hijacker. The hijacker is powered by the Net Spark Safe Internet Solutions. Sponsored advertisements and similar content will display whenever you use the Search.clearch.org site. This hijacker can replace…

THREAT REMOVAL
stf-telecrypt-ransomware-telegram-crypt-virus-greeting-your-files-are-crypted

Remove Telecrypt Virus and Restore .Xcri Files

Telecrypt is how a new cryptovirus was dubbed by malware researchers because of its use of telegram channels. The encrypted files will have the extension .Xcri placed after their name. A window will pop up after the encryption process is…

THREAT REMOVAL
stf-paysafe-generator-ransomware-german-message-ransom-note

Remove Paysafe Generator Virus and Restore .cry_ Files

Paysafe Generator 2016 is the name for a cryptovirus that pretends to be a key generator for Paysafe card codes and make you money. In fact, it is ransomware and the irony is that its developers demand payment in Paysafe.…

THREAT REMOVAL
stf-cerber-ransomware-4-1-5-4-1-5-ransom-lock-screen-message-note

Remove Cerber 4.1.5 Ransomware – Restore Your Files

Developers of the Cerber ransomware have released version 4.1.5 for their malware. Apparently, besides the change in its desktop background image, the address for the payment site has also been switched. The same randomized extension is used for the encrypted…

THREAT REMOVAL
stf-hollycrypt-ransomware-holly-crypt-hollyman37-virus-vodka-ransom-note-read-this-shit-message

Remove Hollycrypt Virus and Restore .Hollycrypt Files

Hollycrypt is the name for yet another ransomware cryptovirus that is based on HiddenTear. Each encrypted file will have the extension .Hollycrypt appended to it. It uses the AES encryption algorithm and wants Bitcoins or Vodka as payment. To see…

THREAT REMOVAL
stf-cerbertear-ransomware-cerber-tear-hiddentear-copycat-virus-ransom-note

CerberTear Ransomware. Remove It and Restore .cerber Files

The Cerber ransomware has become so popular that there is bound to be copycats. One of them is the CerberTear ransomware. The virus will encrypt your files while placing the .cerber extension and displaying a ransom note afterward, which imitates…

THREAT REMOVAL
stf-fucksociety-ransomware-fuck-society-virus-ransom-note-name-middle-finger-fsociety

Fuck Society Ransomware – Remove it and Restore .dll Files

Fuck Society ransomware isn’t the first cryptovirus with that theme. This one however claims to use RSA with 4096 bits for the encryption process. All encrypted files will have the extension .dll. That is troubling, because if you tamper with…

THREAT REMOVAL
stf-masterbuster-ransomware-master-buster-virus-darkwing-ransom-note-message

MasterBuster Virus Removal – Restore .hcked Files

The malware researcher Karsten Hahn has discovered the MasterBuster ransomware. The virus will encrypt your files with the .hcked extension and display a ransom note with payment instructions afterward. The ransomware is based on the open-source EDA2 project. To see…

THREAT REMOVAL
stf-kangaroo-ransomware-virus-message-id

Remove Kangaroo Ransomware and Restore .crypted_file Data

Kangaroo ransomware is a variant of the Apocalypse virus. That extension appended to files which are locked by it is .crypted_file. The AES algorithm is utilized for the encryption process. The Esmeralda ransomware seems to be an intermediate variant related…

THREAT REMOVAL
stf-dummy-encrypter-ransomware-virus-ccleaner-ransom-message-note

Remove DummyEncrypter Virus and Restore Your Files

DummyEncrypter is a ransomware virus. The malware that unwraps the virus is hidden in an executable file. That file pretends to be the installer of CCleaner, while using its icon, name and other details to make it believable and try…

THREAT REMOVAL
stf-rotorcrypt-ransomware-rotor-elizabeth7-protonmail-com-likbez77777-gmail-com-virus-ransom-message-small

Remove RotorCrypt Ransomware and Restore .c400 Files

RotorCrypt is the new name of the previously known Rotor cryptovirus. The virus is also ransomware as its past iteration. After the encryption of your files, the extension .c400 will be appended to them along with one of two emails.…

THREAT REMOVAL
stf-winrarer-ransomware-virus-winrar-encrypted-files-ransom-message-note

WinRarer Ransomware Removal. Restore Your Files

WinRarer is the latest ransomware that uses the encryption of the popular WinRar program to encrypt users’ files. If the virus gets into your system, it will lock your important files in a single .ace archive that is protected with…

This website uses cookies to improve user experience. By using our website you consent to all cookies in accordance with our Privacy Policy.
I Agree