Ransom Trojan

Trojan-Ransom.Win32.Blocker.hbdv removal tips

Malware Removal

The Trojan-Ransom.Win32.Blocker.hbdv is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Blocker.hbdv virus can do?

  • Injection (inter-process)
  • At least one process apparently crashed during execution
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Uses Windows utilities for basic functionality
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs

How to determine Trojan-Ransom.Win32.Blocker.hbdv?


File Info:

crc32: BB10726D
md5: ffe598b9c3de334571881035d478abe4
name: FFE598B9C3DE334571881035D478ABE4.mlw
sha1: d1743e71070eaf2569ce3e9a617a4c4fae8341ce
sha256: abc5a02468192210cb7a2f19d7360950097b7287e9f70ffaa57919ebb9005017
sha512: 28fccc784379d0428d1ee073a39346293e15c69f09b07869ea87f1962a49660512ba8dbb97bc461d612d28c8932d797550c4248821178d33910f7e30d9d98e2e
ssdeep: 12288:xsjvVvOkG/OmIwwoCwqEo/AC50BtRjZmj5TWE3d5j8T94MIm/WuG2pT9G:yTV2EmIwlTMmLGNbs4DQ/3G
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright:
InternalName:
FileVersion: 1.1.21.03
ProductName:
ProductVersion: 1.1.21.03
FileDescription:
OriginalFilename:
Translation: 0x0409 0x04b0

Trojan-Ransom.Win32.Blocker.hbdv also known as:

BkavW32.AIDetect.malware1
ClamAVWin.Trojan.Agent-1284723
Qihoo-360Win32/Ransom.Blocker.HgIASOUA
McAfeeArtemis!FFE598B9C3DE
CylanceUnsafe
ZillyaTrojan.Blocker.Win32.28337
AegisLabTrojan.Win32.Blocker.j!c
SangforTrojan.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.1070ea
SymantecTrojan Horse
ESET-NOD32VBS/Agent.NDW
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 85)
KasperskyTrojan-Ransom.Win32.Blocker.hbdv
AlibabaTrojan:Win32/Starter.ali2000005
NANO-AntivirusTrojan.Win32.Blocker.dsesjr
TencentWin32.Trojan.Blocker.Ejez
ComodoMalware@#fmjlu7qh2g42
F-SecureTrojan.TR/Ransom.941568
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_DUNIHI.YJU
McAfee-GW-EditionBehavesLike.Win32.TrojanAitInject.dc
FireEyeGeneric.mg.ffe598b9c3de3345
SophosMal/Generic-S
JiangminTrojan/Blocker.mvv
AviraTR/Ransom.941568
MAXmalware (ai score=100)
Antiy-AVLTrojan[Ransom]/Win32.Blocker
MicrosoftTrojan:Win32/Vigorf.A
AhnLab-V3Malware/Win32.Generic.C1839194
ZoneAlarmTrojan-Ransom.Win32.Blocker.hbdv
VBA32Backdoor.Androm
MalwarebytesMalware.Heuristic.1003
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_DUNIHI.YJU
RisingMalware.Heuristic!ET#84% (CLOUD)
YandexTrojan.Blocker!eesPDf/t32Q
IkarusWorm.VBS.Agent
FortinetW32/Blocker.HBDV!tr
AVGWin32:Malware-gen
AvastWin32:Malware-gen

How to remove Trojan-Ransom.Win32.Blocker.hbdv?

Trojan-Ransom.Win32.Blocker.hbdv removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment