Malware

MSIL:LockScreen-BJ [Trj] removal tips

Malware Removal

The MSIL:LockScreen-BJ [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL:LockScreen-BJ [Trj] virus can do?

  • The binary likely contains encrypted or compressed data.

How to determine MSIL:LockScreen-BJ [Trj]?


File Info:

crc32: 0EC9B76F
md5: 1a85159c3899e15d102174fc00d1a932
name: 1A85159C3899E15D102174FC00D1A932.mlw
sha1: ae82f5177122ddce8aa0bdd8e6240b4b9d08812e
sha256: 5e62c0971dbc7edc35d1ee6df478459227135d18535d4fd532305180302bfe0b
sha512: 1ed2682e3c59f284b9d7070e216366daaf57787042503d7c706e6a9d975ca1be952139816cc50fb4ba93e75d97865cc54f7a80be7c63a344306dc3d765ac0dea
ssdeep: 6144:Zz7jp0yN90QEbi6dRhL7lT9fiDjiyXBNz3l6coCPbAOXpsnEgwEx:1qy904M6DRl/PbAIXEx
type: PE32+ executable (GUI) x86-64, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
InternalName: Wextract
FileVersion: 11.00.9600.16428 (winblue_gdr.131013-1700)
CompanyName: Microsoft Corporation
ProductName: Internet Explorer
ProductVersion: 11.00.9600.16428
FileDescription: Win32 Cabinet Self-Extractor
OriginalFilename: WEXTRACT.EXE .MUI
Translation: 0x0409 0x04b0

MSIL:LockScreen-BJ [Trj] also known as:

LionicTrojan.Win32.Generic.4!c
DrWebTrojan.Encoder.15077
ClamAVWin.Ransomware.Koolova-9850494-0
CAT-QuickHealRansom.Ghocwalcrypt.A3
ALYacGen:Heur.Ransom.REntS.Gen.1
CylanceUnsafe
SangforSuspicious.Win32.Save.a
ESET-NOD32multiple detections
APEXMalicious
AvastMSIL:LockScreen-BJ [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Ransom.MSIL.Agent.gen
NANO-AntivirusTrojan.Win32.Filecoder.eetvka
MicroWorld-eScanGeneric.Ransom.Koolova.94D35C84
SophosGeneric ML PUA (PUA)
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_FileCoder.R002C0DHL21
McAfee-GW-EditionRansomware-FTD!9168D1C00ED9
FireEyeGeneric.mg.1a85159c3899e15d
SentinelOneStatic AI – Malicious SFX
AviraHEUR/AGEN.1133963
Antiy-AVLTrojan/Generic.ASMalwS.170E2FD
MicrosoftRansom:MSIL/Ghocwalcrypt.A
ZoneAlarmHEUR:Trojan-Ransom.MSIL.Agent.gen
GDataMSIL.Trojan-Ransom.Cryptear.X
McAfeeArtemis!1A85159C3899
PandaTrj/CI.A
TrendMicro-HouseCallRansom_FileCoder.R002C0DHL21
YandexTrojan.Filecoder!ETWuxDG9oKE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Filecoder.DY!tr.ransom
AVGMSIL:LockScreen-BJ [Trj]

How to remove MSIL:LockScreen-BJ [Trj]?

MSIL:LockScreen-BJ [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment