Crack

Should I remove “HackTool:Win32/Bootlock.A”?

Malware Removal

The HackTool:Win32/Bootlock.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:Win32/Bootlock.A virus can do?

  • Creates RWX memory
  • Unconventionial binary language: Russian
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine HackTool:Win32/Bootlock.A?


File Info:

crc32: D05EC0F6
md5: c8f5f007e75f79d7289568406b450a21
name: C8F5F007E75F79D7289568406B450A21.mlw
sha1: 424232cd270b7e7d255d440d25188097b9f0e465
sha256: be0830713d84ebe82e0fd2a9380d4e4fba59b547691a14069ea024c8562396d4
sha512: 4de27d38bfcdfda879d81703d44a02d3699ce28d924ea509cabb106df9cdd03365f7386afcfdce5a8915555e733579221c152091802061c44c1a920f40873b73
ssdeep: 3072:9PdEbA9i6ZUVXMdvx4JVAKvj62QvOOi2RW8F1CaDNmS4dZbAX/qcNOG+xD9VtxZ:VdE89ZU+dvIfXI3XCaDWZbA0Frt
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyrights damned!
InternalName:
FileVersion: 0.2.0.0
CompanyName: VaZoNeZ Corp.
LegalTrademarks:
ProductName: [MBRLocker Builder]
ProductVersion: 0.2.0.0
FileDescription: [MBRLocker Builder]
OriginalFilename:
Translation: 0x0419 0x04e3

HackTool:Win32/Bootlock.A also known as:

MicroWorld-eScanTrojan.Generic.KDV.298598
McAfeeGenericRXAA-FA!C8F5F007E75F
CylanceUnsafe
ZillyaTrojan.MBRlock.Win32.24
AegisLabHacktool.Win32.Mblocker.toOL
SangforTrojan.Win32.Generic.K
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.Generic.KDV.298598
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.7e75f7
ArcabitTrojan.Generic.KDV.D48E66
SymantecML.Attribute.HighConfidence
APEXMalicious
ClamAVWin.Trojan.Ransom-43
KasperskyConstructor.Win32.MBRLocker.a
AlibabaHackTool:Win32/MBRLocker.33691079
NANO-AntivirusRiskware.Win32.Mblocker.cyycqq
RisingTrojan.MBRlock!1.66BD (CLOUD)
Ad-AwareTrojan.Generic.KDV.298598
SophosGeneric PUA EC (PUA)
ComodoApplicUnsaf@#23aopcy273o7j
F-SecureMalware.BOO/Ransom.AB
DrWebMBRlock.Generator.1
VIPRETrojan.Win32.Generic!BT
TrendMicroHKTL_MBLOCKER
McAfee-GW-EditionBehavesLike.Win32.Trojan.cc
MaxSecureTrojan.Malware.121218.susgen
FireEyeTrojan.Generic.KDV.298598
EmsisoftTrojan.Generic.KDV.298598 (B)
JiangminConstructor.Mblocker.a
WebrootW32.Malware.Gen
AviraBOO/Ransom.AB
MAXmalware (ai score=100)
Antiy-AVLHackTool[Constructor]/Win32.Mblocker
KingsoftWin32.Troj.Generic.(kcloud)
MicrosoftHackTool:Win32/Bootlock.A
ViRobotTrojan.Win32.Generic.197120.B
ZoneAlarmConstructor.Win32.MBRLocker.a
GDataTrojan.Generic.KDV.298598
CynetMalicious (score: 85)
ALYacTrojan.Generic.KDV.298598
VBA32Trojan.Ransom.5705
MalwarebytesTrojan.MBRLock
PandaGeneric Malware
ESET-NOD32a variant of Win32/MBRlock.R
TrendMicro-HouseCallHKTL_MBLOCKER
TencentWin32.Trojan.Ransom.Tccb
YandexConstructor.Mblocker!VGERIVmxNOg
IkarusTrojan-Ransom.Mbro
eGambitUnsafe.AI_Score_99%
FortinetW32/Mblocker.B!kit
BitDefenderThetaGen:NN.ZelphiF.34590.mmKfaGl02Lfc
AVGFileRepMalware
AvastFileRepMalware
Qihoo-360Win32/Constructor.aff

How to remove HackTool:Win32/Bootlock.A?

HackTool:Win32/Bootlock.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment