SectionBrowser, Section Browser ads: what it is and how to remove it
SectionBrowser is another Adload adware family member that attacks Mac users on a regular basis. These potentially malicious applications are mostly spread via fake Flash Player installation requests or are bundled with pirated software.
Facts checked October 6, 2026. Removal steps checked against Apple's current documentation and the security vendors' reports. We have not run the malware on a Mac. Sections marked as our earlier report are the original text: they describe the threat as it was then and have not been reviewed since. The 2026 status, the removal steps and the questions are current.
Automatic
Get a free scan and check if your Mac is infected.
Fortect for Mac scans for malware and unwanted programs, and its free scan shows what it finds before you decide anything.
A scan of the PC is a quick way to confirm that nothing installed is behind the akamaihd.net redirects.
Do it yourself · free Remove SectionBrowser, Section Browser ads yourself 4 steps, about 12 minutes, no software needed.
Start the steps
SectionBrowser, Section Browser ads: summary
| Name | SectionBrowser, Section Browser |
|---|---|
| Type | Adware, Mac virus |
| Malware family | Adload |
| Installation | These type of applications are typically installed via shady third-party websites (torrents) what distributed pirated software; alternatively, users might be tricked by a fake Flash Player update prompt |
| Symptoms | Unknown browser extensions/apps installed on the system; search and browsing settings altered to Safe Finder or another bogus tool; New profiles established on a Mac; browser redirects leading to malicious sites |
| Detection names | No Microsoft detection name is known |
| Removal | Scan the Mac with security software to find the malware and anything installed with it. Fortect for Mac scans for malware and unwanted programs. Remove it nowTo use the full-featured product, you have to purchase a license for Fortect. The scan is free. |
Show 8 more facts
| Distribution | Not recorded in the old report |
|---|---|
| Damage | Not recorded in the old report |
| Evidence | 4 write-ups by security sites; details still limited |
| Domains | akamaihd.net |
| Ads shown as | Redirects through ad pages |
| Browsers | Chrome, Edge and Firefox |
| First seen | 30 July 2020 |
| Facts checked | 6 October 2026 |
Is SectionBrowser, Section Browser ads dangerous?
From our report of Jul 2020 · not reviewed since
Ways to avoid Mac adware and malware
Mac users for years believed that macOS is immune to malware, as well as lesser infections such as adware.
However, research performed by experts in early 2020 showed that Mac malware is outpacing Windows one, , which came as a quite of a shock to many. This is just another sign that macOS users should not believe the hoax that has been busted many times and use adequate measures to protect their machines from online threats just as much as Windows users do.
While the built-in tools such as Gatekeeper and the sandbox environment might protect from some infections, nothing can be done about threats that are let in by users themselves.
Apple has implemented a rule that makes users enter their login credentials each time they are trying to install an app from an unapproved source. However, if scamming techniques are used to make users enter their passwords, the malicious app will get in.
Thus, the first step in Mac safety is to avoid potentially dangerous websites that offer free versions of paid applications (such as Adobe Photoshop or WinRar). If you want a reliable app, simply pay for it, and you will avoid a lot of trouble, as well as more serious consequences such as identity theft.
You should also never neglect OS and software updates (although you should never install Flash or its fake updates) and install a powerful security suite to protect you from malware.

From our report of Jul 2020 · not reviewed since
Terminate SectionBrowser malware
If you noticed unexpected browser changes, you should always be concerned.
Once you let one malicious app in, it could potentially download more malware to your system, compromising it further. Therefore, you should remove SectionBrowser, along with other threats from your Mac as soon as possible.
Anti-malware tools can find and delete malicious files that were dropped by the virus and save you a lot of time and effort. However, if you insist on terminating the infection yourself, you can check the following sections of your computer to look for malicious entries:
Additionally, if you can't get rid of the browser extension established by the SectionBrowser virus, you should reset your Safari and all the other browsers that you use.
- System Preferences > Accounts> Login Items
- System Preferences > Users&Groups > Profiles
- ~/Library/LaunchAgents
- ~/Library/Application Support
- ~/Library/LaunchDaemons
From our report of Jul 2020 · not reviewed since
More from our earlier report on SectionBrowser, Section Browser
- Malware and adware can meddle with your system, reducing its performance.
From our report of Jul 2020 · not reviewed since
SectionBrowser is a Mac virus that can be more dangerous than you might think
SectionBrowser is another Adload adware family member that attacks Mac users on a regular basis.
These potentially malicious applications are mostly spread via fake Flash Player installation requests or are bundled with pirated software. Once inside the system, it abuses the built-in AppleScript in order to bypass the computer's defenses and establish configuration profiles.
Right after, SectionBrowser installs a browser extension on Google Chrome, Safari, or Mozilla Firefox, which is enabled to read user sensitive data, such as credit card details. Additionally, users can see that their homepage and new tab URL are changed to Safe Finder or another bogus search tool. All the searchers performed by such a hijacked browser might perform several redirects via domains such as akamaihd.net.
What makes SectionBrowser virus dangerous is that it might be associated with other macOS infections, such as Shlayer Trojan - one of the most prolific Mac viruses out there. According to security researchers, this Trojan is present on 10% of all Macs. However, many might not even know that the threat is present, as it is designed to be stealthy.
In most cases, users get infected with SectionBrowser after they download potentially dangerous files from software distribution sites. In most cases, the malicious app is bundled with a crack or pirated application installer. Once extracted, it delivers the malicious payload of SectionBrowser. Additionally, fake Flash Player updates can also be the cause of the infection.
Once inside the system, the SectionBrowser virus performs a variety of changes:
These activities might easily prevent SectionBrowser removal when trying to do it manually. The main goal of these modifications is to redirect users to various suspicious websites and display intrusive popups, banners, flashing windows, in-text links, deals, offers, coupons, and other commercial content. Ads can be particularly intrusive and disrupt normal web browsing activities.
However, some SectionBrowser ads might also be of a malicious nature and display more fake updates, tech support scams, or phishing messages. In any case, you should never click on such popups, as you might infect your Mac even further. Besides, you might be tricked into subscribing to a service you never asked for and will be charged monthly via your credit card.
Even if you do not get tricked by malicious redirects and ads, SectionBrowser extension is capable of reading sensitive information, as it grants itself such permissions during the installation process. Due to this, cybercriminals might gain access to your online banking, social media accounts, and other personal details.
You should remove SectionBrowser as soon as possible, as keeping this malicious app might result in serious consequences, such as additional malware infections, identity theft, or monetary losses.
To eliminate the virus, we suggest you employ a powerful security solution that can detect all the malicious files automatically and remove them for good. If you are unable to get rid of the browser extension, you should reset the installed web browsers.
- installs a browser extension with elevated permissions;
- changes new tab functionality and sets a new homepage;
- redirects all searches to suspicious search providers;
- drops several malicious .plist files to Library or other folders;
- establishes a new malicious profile.


Check your browser and PC
- Address:
akamaihd.net
How to remove SectionBrowser, Section Browser ads
Remove the app and what starts it, then check the browsers.
Step 1: Delete apps and downloads you did not intend to install
Open the Applications folder and your Downloads folder. Drag any app you did not install, and any disk image (
.dmg), installer (.pkg) or archive (.zip) that came from SectionBrowser, Section Browser or a site you do not trust, to the Bin, then empty the Bin.Also check
~/Library/Application Supportfor a folder with the same name as the app you removed.Step 2: Remove unknown login items and background items
Open System Settings > General > Login Items & Extensions. Under Open at Login and Allow in the Background, switch off or remove anything you do not recognize, especially items whose developer is shown as an unknown name or that appeared on the day you ran the command.
Then open Finder, choose Go > Go to Folder and check
~/Library/LaunchAgents,/Library/LaunchAgentsand /Library/LaunchDaemons for property list (.plist) files you did not add. Drag suspicious ones to the Bin, then restart the Mac.Step 3: Check the browsers for extensions and changed settings
In Safari open Settings > Extensions and General (homepage). In Chrome open
chrome://extensions, in Firefoxabout:addons.Remove any extension you did not add, and reset the homepage and search engine if they changed. Browsers hold saved passwords and cookies, which is why the password step comes first.
Step 4: Quit what is running that you do not recognize
Open Activity Monitor (in Applications > Utilities, or search for it with Command + Space).
In the CPU or Network tab, look for a process you did not install or whose name is random, select it, click the stop button (the octagon with an X) and choose Quit or Force Quit.
Note the name first: you will look for the same name in the next steps. Malware that comes back after a restart is handled in the next two steps.
Instructions for each browser and system
The detailed steps for every browser and system this guide covers. Open the one you use.
Remove from Google Chrome
Delete malicious extensions from Google Chrome:
- Open Google Chrome, click on the Menu (three vertical dots at the top-right corner) and select More tools > Extensions.
- In the newly opened window, you will see all the installed extensions. Uninstall all suspicious extensions related to the unwanted program by clicking Remove.

Clear cache and web data from Chrome:
- Click on Menu and pick Settings.
- Under Privacy and security, select Clear browsing data.
- Select Browsing history, Cookies and other site data, as well as Cached images and files.
- Click Clear data.

Change your homepage:
- Click menu and choose Settings.
- Look for a suspicious site in the On startup section.
- Click on Open a specific or set of pages and click on three dots to find the Remove option.
Reset Google Chrome:
If the previous methods did not help you, reset Google Chrome to eliminate all the unwanted components:
- Click on Menu and select Settings.
- In the Settings, scroll down and click Advanced.
- Scroll down and locate Reset and clean up section.
- Now click Restore settings to their original defaults.
- Confirm with Reset settings.

Remove from Mozilla Firefox (FF)
Remove dangerous extensions:
- Open Mozilla Firefox browser and click on the Menu (three horizontal lines at the top-right of the window).
- Select Add-ons.
- In here, select the unwanted extension and click Remove.

Reset the homepage:
- Click three horizontal lines at the top right corner to open the menu.
- Choose Settings.
- Under Home, set your preferred homepage and new tab settings.
Clear cookies and site data:
- Click Menu and pick Settings.
- Go to Privacy & Security section.
- Scroll down to locate Cookies and Site Data.
- Click on Clear Data...
- Select Cookies and Site Data and Temporary cached files and pages, then click Clear.

Reset Mozilla Firefox
If clearing the browser as explained above did not help, reset Mozilla Firefox:
- Open Mozilla Firefox browser and click the Menu.
- Go to Help and then choose Troubleshooting Information.

- Under Give Firefox a tune up section, click on Refresh Firefox...
- Once the pop-up shows up, confirm the action by pressing on Refresh Firefox.

Delete from Safari
If you use Safari as your primary browser and you can get rid of some extensions, reset it as follows:
Remove dangerous extensions:
- Open Safari, click Safari in the menu at the top-left of the screen, and select Preferences.
- Go to the Extensions tab, look for any suspicious entries, and click Uninstall to remove them.

Clear history and website data:
- Click Safari in the menu and pick Clear History.
- Set Clear to all history and confirm with Clear History.

Reset Safari:
- Click Safari in the menu and select Preferences > Advanced.
- Enable Show Develop menu in menu bar.
- From the menu bar, click Develop and select Empty Caches.

Delete from macOS
To terminate SectionBrowser malware from your Mac, follow these steps:
Remove the unwanted application:
- From the menu bar, select Go > Applications.
- In the Applications folder, look for any suspicious entries, then drag them to Trash (or right-click and pick Move to Trash).

Delete leftover files and folders:
- Select Go > Go to Folder.
- Enter /Library/Application Support and remove any suspicious folders related to the unwanted program.
- Repeat the same check in the /Library/LaunchAgents and /Library/LaunchDaemons folders, deleting any suspicious entries.

- Finally, empty the Trash to permanently remove the leftovers.
Choose a proper web browser and improve your safety with a VPN tool
Online spying has got momentum in recent years and people are getting more and more interested in how to protect their privacy online.
One of the basic means to add a layer of security - choose the most private and secure web browser. Although web browsers can't grant full privacy protection and security, some of them are much better at sandboxing, HTTPS upgrading, active content blocking, tracking blocking, phishing protection, and similar privacy-oriented features.
However, if you want true anonymity, we suggest you employ a powerful VPN - it can encrypt all the traffic that comes and goes out of your computer, preventing tracking completely.
Lost your files? Use data recovery software
While some files located on any computer are replaceable or useless, others can be extremely valuable.
Family photos, work documents, school projects - these are types of files that we don't want to lose. Unfortunately, there are many ways how unexpected data loss can occur:
- power cuts
- Blue Screen of Death errors
- hardware failures
- crypto-malware attack
- even accidental deletion
To ensure that all the files remain intact, you should prepare regular data backups. You can choose cloud-based or physical copies you could restore from later in case of a disaster. If your backups were lost as well or you never bothered to prepare any, can be your only hope to retrieve your invaluable files.
Questions about SectionBrowser, Section Browser ads
How do I stop akamaihd.net from opening?
Find and remove whatever opens it. Start with the browser's extensions page and remove anything you do not remember adding. Next, open the notification settings and take away permission from sites you do not recognise.
Then check Settings > Apps > Installed apps for programs added around the day the redirects began, and uninstall those. Restart the browser and test a few links after each step.
If akamaihd.net still appears, reset the browser, which restores the default search engine, start page and permissions without deleting bookmarks or saved passwords. Redirects that survive a reset in every browser point to a program in Windows, and a full scan is the next step.
Should I worry about redirects to akamaihd.net?
Worry less about akamaihd.net itself and more about what keeps sending you there. A single redirect from a free streaming or download site is normal and harmless once the tab is closed.
Repeated redirects on sites that used to work fine mean something in the browser or in Windows changed, often an extension or program installed alongside other software. It may also collect the pages you visit. Remove the cause with the steps in this guide, and do not act on anything the redirected pages ask:
- no Allow clicks
- no downloads
- no calls
If you already did one of those, the matching section of this guide explains what to do next.
Why does SectionBrowser, Section Browser show me ads?
Because that is its whole purpose. SectionBrowser, Section Browser is an adware extension, and its operators are paid for every ad it displays and every click it gets. In this case the ads take the form of redirects through ad pages.
They are chosen by ad networks that accept almost any advertiser, which is why so many look like warnings or prizes. The ads are not a sign that your PC is broken or infected with something worse; they are a sign that something on it, or in the browser, has permission to advertise. Removing that permission or program stops them.
Do I have to clean every browser?
Yes, if you use more than one. We saw SectionBrowser, Section Browser in Chrome, Edge and Firefox, and each browser keeps its own extensions, notification permissions and settings. Chrome and Edge share the same extension format, so one installer can add the same adware to both, while Firefox has its own add-ons.
Check every browser on the PC, including ones you rarely open. If you sync a browser with an account, clean it while signed in, so that the removal reaches your other computers rather than the adware returning from them.
How do I know the ads come from SectionBrowser, Section Browser?
Look for redirects to akamaihd.net. That is the trace SectionBrowser, Section Browser leaves, and it shows up as redirects through ad pages. Ads that appear on every site, including ones that never carried ads before, point to something on your PC or in the browser rather than to the sites themselves.
A quick test is a private window, where extensions are off by default: if the ads disappear there, an extension is responsible. If they appear even with the browser closed, the source is a notification permission or a program in Windows.
Does adware steal passwords?
Ordinary adware is built to show ads, not to steal logins, and most of it never touches saved passwords. The line is blurry, though. Extensions that can read every page could capture what you type, and adware ads sometimes lead to phishing pages that ask for passwords directly.
If you entered credentials on a page reached through an ad, change that password from a clean device and turn on two-step verification. Otherwise, removing adware extension and clearing cookies is usually enough.
An ad showed a phone number and I called it. What now?
The number belongs to scammers, not to Microsoft or an antivirus company. If you only talked, hang up and do not call back. If you let them connect to the PC, disconnect it from the internet, uninstall the remote access program they used, such as AnyDesk, TeamViewer, ScreenConnect or UltraViewer, and run a full and offline scan.
If you paid or gave bank details, call your bank at once on the number printed on your card. Change any passwords you typed while they were connected, and report the call.
I clicked on one of the ads. Am I infected?
Probably not. Clicking an ad usually only opens a page, and a page cannot install programs on an up-to-date Windows PC without your help.
You are at risk only if you then downloaded and ran a file, allowed notifications, entered card or login details, or called a phone number shown on the page. Delete any download and run a full and offline scan.
Change passwords you typed, from a clean device. Call your bank if you gave card details. If you called a number or allowed remote access, see the next question.
Why didn't my antivirus catch SectionBrowser, Section Browser?
Many security products do not block adware or notification sites by default, because users often agreed to them, even through a misleading prompt. Notification spam installs nothing at all, so there is no file to detect.
In Windows 11 you can make Microsoft Defender block potentially unwanted apps: open Windows Security > App & browser control > Reputation-based protection settings and turn on Potentially unwanted app blocking. If notifications caused the pop-ups, no scanner will report them; the fix is in the browser's site settings.
Will Fortect remove SectionBrowser, Section Browser?
Fortect for Mac scans for malware and unwanted programs, and its free scan shows what it finds on your Mac before you decide anything.
For SectionBrowser, Section Browser, follow the plan on this page as well: removing a launch item or an app is done in macOS itself, and a scanner cannot undo what was typed or entered on the infected Mac, such as saved passwords that were copied.
Change your passwords from another device first, and if the page tells you to erase the Mac, a scan is not a substitute. The free scan costs nothing and the full-featured product needs a license.
Sources
- Kaspersky: Shlayer Trojan attacks one in ten macOS users (read October 6, 2026)
- Vox: Apple's malware problem is getting worse (read October 6, 2026)
- Seemit: Top 10 Most Pirated Software of 2017 (read October 6, 2026)
- Google Chrome Help: Use notifications to get alerts (no longer online) (read October 6, 2026)
- FTC: How to recognize, remove and avoid malware (read October 6, 2026)