Month June 2018

How to remove BtcKING ransomware and decrypt .BtcKING files

If you found, that some files on your PC got new .BtcKING extension and became unreadable, unfortunately, your system was hit by a virus. Virus researchers classified such viruses as Ransomware-trojan. Our sample called BtcKING Ransomware and started to attack users machines since the second half of June 2018. An encryption method is AES, so decryption is near impossible. Despite it, we can help with removing BtcKing ransomware and partial decryption of .BtcKING files.

How to uninstall (remove) Ads by TS

Ads by TS string or pop-up, as well as Powered by TS, Brought to you by TS, RocketTab powered by TS, Ads by TS or Ads powered by TS in Google Chrome, Mozilla Firefox , Safari or IE means, that your system was infected by the ADS by TS virus. It is an adware displaying pop-up, informing the user about an unexpected gift or just adding not relevant results in search results. Also, this adware can constantly redirect the user to internet markets and displays banners, coupons, links to affiliates and so on. Cybercriminals earn money on this. Also, adware can analyze your personal information and send it to third parties for commercial porpuses. If you find Ads by TS in your browser, you should remove it immed

How to remove Scarab Bomber ransomware and decrypt .bomber, .glutton, .fastsupport@xmpp.jp or .fastrecovery@xmpp.jp files

Scarab Bomber is a new version of the widespread Scarab Ransomware. Created in the Russian-language country, it spreads around the world, mostly in English speaking countries. The virus is very dangerous, because it crypts all files on victims PCs. Moreover, after encryption users can loose these files completely. Unfortunately, only a few versions of this virus are decryptable now. The latest versions of Scarab become very difficult to decrypt. Encrypted files got new .bomber, .fastsupport@xmpp.jp or .fastrecovery@xmpp.jp extensions. For example 1.txt become 1.txt.bomber. Ransomware can encrypt doc, txt, pdf, xls, bmp, jpg, bmp, mp3, avi and many other files.

How to remove Commondatastorage googleapis virus

Commondatastorage googleapis is a typical trojan. Usually, it redirects every browser to http://commondatastorage.googleapis.com/itchio/html/56805/index.html or other sites without user contest. It also can show annoyed pop-ups with commercial information every 1 hour while the user tries to open popular sites, such as Facebook, Instagram etc. Infiltration can be hidden, so users don't realize that something wrong. Unfortunately, windows defender can pass the virus installation process.

How to uninstall (remove) Beam-search.com

Beam-search is a fake browser search engine, called browser hijacker. All useful functions of this hijacker are null and users may cause some troubles with Beam-search.com. It's because collecting and sharing of a user's personal data: hijackers usually collecting a personal data, such as IP address, visited sites, search queries for commercial purposes. After that, the number of not relevant results in popular browsers may increase significantly for victims. Moreover, every new tab will be redirected on unknown markets with dubious and annoyed commercial offers.