Ransom Trojan

Should I remove “Trojan-Ransom.Win32.Blocker.epqw”?

Malware Removal

The Trojan-Ransom.Win32.Blocker.epqw is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Blocker.epqw virus can do?

  • Authenticode signature is invalid

How to determine Trojan-Ransom.Win32.Blocker.epqw?


File Info:

name: 9C7A7344064DCA96CD9A.mlw
path: /opt/CAPEv2/storage/binaries/1f36cba3c031e83e873dc0b432d9017a9a4cac258420b05960ec5ef955c72243
crc32: 1876D4BE
md5: 9c7a7344064dca96cd9a837ff22477ee
sha1: 00c51c19e1382f1563f66259bdb82dbc29ff41f3
sha256: 1f36cba3c031e83e873dc0b432d9017a9a4cac258420b05960ec5ef955c72243
sha512: 4da0d9b6d102696a51504fc307492f77938bc6161aa5167f929b480d01f7ef54e08160ddf146992a6352b92909851aa222162364b1519e368a4cc3f969ca4379
ssdeep: 12288:sukrWvB9EogFPFWQ4ojUFYzxXgqwe4VrdxItNcyEdQyfHQDefqHIBsPPBalV/FEp:s6sogBF3F8dQQwDefqoBYglV/Sl571Aa
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18AD4AE66B28201F7EAD024F018BA77765935DD2517388BE37BD83CBA4C755D22C3938A
sha3_384: fb01a0f753c5625321883cadf7465a9cac908eb8efa4805526a5b3499e21d3bfb52fc2c3021fb91ecbab4f92ede07d73
ep_bytes: e890030000e963fdffff6a1468f83749
timestamp: 2013-03-17 11:55:04

Version Info:

FileDescription:
FileVersion: 1.1.09.04
InternalName:
LegalCopyright:
OriginalFilename:
ProductName:
ProductVersion: 1.1.09.04
Translation: 0x0409 0x04b0

Trojan-Ransom.Win32.Blocker.epqw also known as:

BkavW32.Common.6AB20B80
LionicTrojan.Win32.Blocker.V!c
SkyhighRDN/Ransom
McAfeeRDN/Ransom
Cylanceunsafe
ZillyaTrojan.Blocker.Win32.167171
SangforRansom.Win32.Blocker.Ve06
K7AntiVirusRiskware ( 0040eff71 )
AlibabaRansom:Win32/Blocker.d3e36074
K7GWRiskware ( 0040eff71 )
KasperskyTrojan-Ransom.Win32.Blocker.epqw
AvastWin32:Malware-gen
TencentWin32.Trojan.Blocker.Anhl
Trapminemalicious.moderate.ml.score
JiangminTrojan/AutoHK.fm
Antiy-AVLTrojan[Ransom]/Win32.Blocker
KingsoftWin32.Troj.Undef.a
ZoneAlarmTrojan-Ransom.Win32.Blocker.epqw
MalwarebytesGeneric.Malware/Suspicious
RisingTrojan.Generic@AI.85 (RDML:2/85lElTV+IYPIEVFQYBGw)
MaxSecureTrojan.Malware.221338843.susgen
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Trojan-Ransom.Win32.Blocker.epqw?

Trojan-Ransom.Win32.Blocker.epqw removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment