Trojan

How to remove “Trojan.BlockVMF.S10641641”?

Malware Removal

The Trojan.BlockVMF.S10641641 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.BlockVMF.S10641641 virus can do?

  • Executable code extraction
  • Checks for the presence of known windows from debuggers and forensic tools
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Attempts to disable System Restore
  • Anomalous binary characteristics
  • Attempts to modify Explorer settings to prevent file extensions from being displayed
  • Attempts to modify Explorer settings to prevent hidden files from being displayed

How to determine Trojan.BlockVMF.S10641641?


File Info:

crc32: FB4506AF
md5: 7a734536ade93b16d738ec9999851c53
name: 7A734536ADE93B16D738EC9999851C53.mlw
sha1: 17acdf63c538a32bfb1ded4fcbb57105b09ba5f1
sha256: 853a7665708ad0aaf50eae426cc1cc5e8d726592cc510b8ba92ad109a81ed9d0
sha512: a9aefb24107489da01b0748679042eb7625c2f01f82b33f8b5bf816a951daf5901873d4a07e00d4930d52a1af3eedaa751d47c7f7b085f46cbf14b02da3f9cb2
ssdeep: 3072:B/5F/E7tEf0U+pWtYlpJH7iXQNgggHlxDZiYLK5WpYD:BhF4cJ+gWJH7igNgjdFKs
type: MS-DOS executable, MZ for MS-DOS

Version Info:

Translation: 0x0409 0x04b0
InternalName: DATA
FileVersion: 0.00.0020
CompanyName: Oncom
ProductName: xk
ProductVersion: 0.00.0020
OriginalFilename: DATA.exe

Trojan.BlockVMF.S10641641 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0052964f1 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader7.3730
CynetMalicious (score: 100)
CAT-QuickHealTrojan.BlockVMF.S10641641
ALYacWorm.Ludbaruma.B
CylanceUnsafe
ZillyaTrojan.RegrunGen.Win32.1
SangforRansom.Win32.Foreign_11.se
CrowdStrikewin/malicious_confidence_100% (D)
K7GWP2PWorm ( 0050fa4b1 )
Cybereasonmalicious.6ade93
BaiduWin32.Worm.VB.k
CyrenW32/S-2ee348b2!Eldorado
SymantecBloodhound.W32.VBWORM
ESET-NOD32Win32/VB.ORD
ZonerTrojan.Win32.70598
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Worm.Untukmu-5949608-0
KasperskyTrojan-Ransom.Win32.Blocker.kpuo
BitDefenderWorm.Ludbaruma.B
NANO-AntivirusTrojan.Win32.Regrun.dxtouo
MicroWorld-eScanWorm.Ludbaruma.B
TencentTrojan-Ransom.Win32.Blocker.kalr
Ad-AwareWorm.Ludbaruma.B
SophosML/PE-A + W32/Mato-N
ComodoTrojWare.Win32.Regrun.Q@1gs3xh
BitDefenderThetaAI:Packer.33904C7C1D
VIPREWorm.Win32.Ludbaruma.a (v)
McAfee-GW-EditionBehavesLike.Win32.Generic.cm
FireEyeGeneric.mg.7a734536ade93b16
EmsisoftWorm.Ludbaruma.B (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Blocker.tav
WebrootW32.Malware.Gen
AviraTR/Agent.gdnw
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.2619BD7
MicrosoftWorm:Win32/Bruhorn.B
ArcabitWorm.Ludbaruma.B
ZoneAlarmTrojan-Ransom.Win32.Blocker.kpuo
GDataWin32.Worm.Ludbaruma.A
TACHYONTrojan/W32.VB-Ludbaruma.Zen
AhnLab-V3Trojan/Win32.Blocker.R233013
Acronissuspicious
McAfeeW32/Rontokbro.gen@MM
MAXmalware (ai score=88)
VBA32TScope.Trojan.VB
MalwarebytesGeneric.Trojan.Malicious.DDS
RisingRansom.Blocker!8.12A (TFE:dGZlOgWKyi/lv9zO9g)
YandexTrojan.GenAsa!3Dzo+yWZn14
IkarusTrojan.Win32.Patched
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Regrun.PKE!tr
AVGWin32:Malware-gen

How to remove Trojan.BlockVMF.S10641641?

Trojan.BlockVMF.S10641641 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment