Ransom Trojan

About “Trojan-Ransom.Win32.Blocker.fjqr” infection

Malware Removal

The Trojan-Ransom.Win32.Blocker.fjqr is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Blocker.fjqr virus can do?

  • A process created a hidden window
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz
vakinfo.u-gu.ru

How to determine Trojan-Ransom.Win32.Blocker.fjqr?


File Info:

crc32: 43D823EC
md5: b5e386406c07f2a40c1d4fe308c974c5
name: B5E386406C07F2A40C1D4FE308C974C5.mlw
sha1: 0714e45bdae0392c5401fdc6f4e62219e4f7f941
sha256: f193efb945c5432a0589b6f7ae15ffeef243c1eb3e4344d4e9111876dbdb2497
sha512: 4288f5dd137b7c7d02703d15afe0a70bb9459c1fad692055f9468919f612c1528dd29742375ef6d243c11ba9a2b2fe66aa11a8f8d51f182d3ce1cea6b9df4262
ssdeep: 49152:LiAjlXnS2503h36mfjTMxgKs4QydMnMz5zr5JNdy:PXS2yRtjTMwlydhlzr5JW
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan-Ransom.Win32.Blocker.fjqr also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader11.28425
FireEyeGeneric.mg.b5e386406c07f2a4
McAfeeArtemis!B5E386406C07
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Save.a
BitDefenderThetaGen:NN.ZexaF.34590.LvW@aup5zJpk
SymantecML.Attribute.HighConfidence
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Blocker.fjqr
NANO-AntivirusTrojan.Win32.Blocker.dwclkd
RisingWorm.VBInjectEx!1.99E6 (CLOUD)
F-SecureHeuristic.HEUR/AGEN.1102515
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
JiangminTrojan/Blocker.jet
AviraHEUR/AGEN.1102515
Antiy-AVLTrojan[Ransom]/Win32.Blocker
KingsoftWin32.Heur.KVM011.a.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmTrojan-Ransom.Win32.Blocker.fjqr
CynetMalicious (score: 90)
AhnLab-V3Trojan/Win32.HDC.C579127
VBA32Hoax.Blocker
MAXmalware (ai score=99)
PandaTrj/Genetic.gen
APEXMalicious
TencentWin32.Trojan.Blocker.Phpz
YandexTrojan.Blocker!aHbjfcnd5aI
IkarusTrojan.Ransom.Blocker
FortinetW32/Blocker.FJQR!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Ransom.23f

How to remove Trojan-Ransom.Win32.Blocker.fjqr?

Trojan-Ransom.Win32.Blocker.fjqr removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment