During our recent investigation into suspicious web activity, our cybersecurity team uncovered a rogue webpage known as adsforfunrtb[.]top. This site is part of a broader network of deceptive domains that manipulate users into enabling browser notifications, leading to a flood of unwanted pop-up ads, redirects to malicious websites, and potential exposure to more severe cyber threats.
While it might look like a harmless loading screen at first glance, adsforfunrtb.top uses manipulative tactics like fake video players or progress bars paired with prompts such as “Please tap the Allow button to continue.” These tactics are designed to trick users into clicking “Allow” and unknowingly subscribing to a barrage of spammy notifications.
Threat Summary
Parameter | Details |
---|---|
Name | Ads by adsforfunrtb.top |
Threat Type | Push notification ads, Pop-up ads, Unwanted ads |
Associated Emails | N/A |
Detection Names | Not currently flagged by major engines on VirusTotal |
Serving IP Address | 104.21.48.1 |
Observed Domains | jfdhq.adsforfunrtb[.]top |
Symptoms of Infection | Unwanted pop-up ads, slower browser performance, intrusive notifications |
Distribution Methods | Fake prompts, pop-up ads, rogue ad networks, bundled with adware |
Potential Damage | Privacy intrusion, additional malware infections, identity theft risk |
Danger Level | High |
How adsforfunrtb.top Works
Access to adsforfunrtb.top typically happens through redirects. These redirects are most often initiated by websites utilizing rogue advertising networks, which serve up shady ads and forcibly push users onto malicious pages. Once on adsforfunrtb.top, the user is shown a fake system prompt encouraging them to enable notifications. Granting this permission opens the floodgates to persistent browser-based spam.
These notifications can deliver:
- Fake virus alerts
- Scam messages pretending to be from tech support
- Links to potentially unwanted applications (PUAs), browser hijackers, or ransomware payloads
Due to the site’s abuse of browser features and delivery of malicious content, adsforfunrtb.top is not just a nuisance—it is a gateway to more serious digital risks.
Why adsforfunrtb.top Is a Serious Threat
The deceptive nature of adsforfunrtb.top is what makes it dangerous. Users might think they’re enabling a video player or unlocking a download, but in reality, they are unknowingly handing over control of their browser’s notifications to a malicious entity.
Once active, these push notifications can:
- Interrupt browsing sessions with constant ads
- Expose users to phishing scams and tech support fraud
- Compromise system security through forced redirects to exploit kits or malware downloads
Moreover, this threat adapts its behavior based on geolocation, meaning the content it serves can vary depending on the user’s IP address, making detection and mitigation more challenging.
Manual Adware Removal Process (Windows & Mac)
Step 1: Identify and Uninstall Suspicious Applications
For Windows Users
- Open Task Manager by pressing
Ctrl + Shift + Esc
. - Navigate to the “Processes” tab and search for unknown or high-resource-consuming processes.
- If you detect anything suspicious, right-click and select “End Task.”
- Go to
Control Panel
>Programs
>Programs and Features
. - Locate and uninstall any unfamiliar programs.
For Mac Users
- Open
Finder
and click onApplications
. - Identify and move any suspicious applications to the
Trash
. - Empty the
Trash
. - Check
System Preferences
>Users & Groups
>Login Items
for unknown startup programs and remove them.
Step 2: Remove Malicious Browser Extensions
Google Chrome
- Open Chrome, click
Menu
(three dots) >Extensions
. - Locate and remove unknown extensions.
- Reset Chrome:
Settings
>Reset settings
> “Restore settings to their original defaults.”
Mozilla Firefox
- Click
Menu
>Add-ons and themes
. - Remove suspicious extensions.
- Reset Firefox:
Help
>More troubleshooting information
> “Refresh Firefox.”
Safari (Mac)
- Open Safari, go to
Preferences
>Extensions
. - Delete unknown extensions.
- Reset Safari:
History
> “Clear History.”
Microsoft Edge
- Click
Menu
>Extensions
. - Remove any unfamiliar extensions.
- Reset Edge:
Settings
>Reset settings
> “Restore settings to their default values.”
Step 3: Delete Adware-Associated Files and Folders
For Windows Users
- Press
Win + R
, type%AppData%
, and press Enter. - Locate and delete suspicious folders.
- Repeat for
%LocalAppData%
,%ProgramData%
, and%Temp%
.
For Mac Users
- Open Finder and press
Shift + Command + G
, then enter~/Library/Application Support/
. - Remove any suspicious folders.
- Repeat for
~/Library/LaunchAgents/
,~/Library/LaunchDaemons/
, and~/Library/Preferences/
.
Step 4: Flush DNS Cache to Remove Adware Traces
For Windows Users
- Open
Command Prompt
as Administrator. - Type
ipconfig /flushdns
and press Enter.
For Mac Users
- Open
Terminal
. - Enter
sudo killall -HUP mDNSResponder
and press Enter.
Step 5: Restart Your System
Perform a reboot to apply the changes and ensure the removal process is complete.
Automatic Adware Removal Using SpyHunter (Windows & Mac)
For an effortless and effective solution, use SpyHunter, a powerful anti-malware tool designed to detect and remove adware completely.
Step 1: Download SpyHunter
Click the link to download SpyHunter: Download SpyHunter Here.
Step 2: Install SpyHunter
Follow the installation guide based on your operating system:
For Windows Users
- Run the downloaded
.exe
file. - Follow the installation instructions.
- Launch SpyHunter and allow it to update its malware database.
For Mac Users
- Open the downloaded
.dmg
file. - Drag and drop SpyHunter into
Applications
. - Open SpyHunter and let it update its database.
Step 3: Scan and Remove Adware
- Open SpyHunter.
- Click
Start Scan
. - Wait for the scan to complete.
- Click
Fix Threats
to remove detected malware.
Step 4: Restart Your Computer
After SpyHunter removes all threats, restart your system to ensure all adware components are fully removed.
Conclusion
adsforfunrtb.top is more than just an annoying pop-up site—it is a browser-based threat that can lead to a cascade of security problems if left unaddressed. Users are strongly advised to be cautious when prompted to allow browser notifications, especially on unfamiliar or suspicious websites. While this article does not include removal or prevention steps, it’s important to understand the threat landscape and recognize warning signs before it’s too late.