Tim Kas

Tim Kas

Computer security specialist. I try to do my best and share my knowledge with you by creating simple-to-follow and useful guides on various topics about computer security.

How to uninstall (remove) Search.lavradoor.com and Lavradoor extension (Mac)

earch.lavradoor.com, powered by Lavradoor extension is a browser hijacker, which changes default search engine on your Chrome, Safari or Mozilla Firefox. Distributes by Lavradoor (network, which specializing in Mac software distribution), it changes a homepage to https://www.Search.lavradoor.com without your participation. Search.lavradoor.com browser hijacker adds Admin Preferences to your settings so that the default search engine becomes “enforced by administrator” and near impossible to delete.

How to remove Gandcrab 4 ransomware and decrypt .KRAB files

Gandcrab 4 is a newest version of most dangerous PC virus GANDCRAB RANSOMWARE. Unfortunately, the virus codes users files and adds new .KRAB extension (without any permission) by the most advanced algorythms of encryption AES-256 and RSA-2048, which made infected files undecryptable without special code. Users just lose their important files. Gandcrab 4 can encrypt pictures and photos with different extensions, all videos, databases, document file, for example, PDF, DOC, XLS. Also, Gandcrab 4 removes all shadow copies and restore points. Despite this fact, the main method to decrypt .Krab files is restoring by special recovering software(see in our article).

How to remove KingOuroboros ransomware and decrypt .king_ouroboros files

KingOuroboros ransomware is a new crypto-trojan, which encrypts all files on victims machines without permission. Trojans use special algorithms - AES, because of what the user cannot open the encrypted files without special knowledge, decryption or tool or recovery software. Also, it locks screen by Delta screen and insert file extensions .king_ouroboros to every encrypted file, for example, if you have a Photo.png file, then its name becomes Photo.png.king_ouroboros. All text documents, images , photos, images, and other files is at risk.

How to remove Animus Locker ransomware and decrypt .animus files

Animus Locker ransomware is a relatively new virus, which encrypts users files on their machines, through unprotected network configuration. The first symptom of infiltration is new extension .animus which added to all filenames on users PC. For example, 1.doc become 1.doc.animus. After encryption users can use coded files. Animus Locker based on AES algorithm, so decryption is very difficult but sometimes possible.