Ransom Trojan

Trojan-Ransom.Win32.Blocker.hrft removal

Malware Removal

The Trojan-Ransom.Win32.Blocker.hrft is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Blocker.hrft virus can do?

  • Deletes its original binary from disk
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan-Ransom.Win32.Blocker.hrft?


File Info:

crc32: C4841712
md5: 1012e76d81c232308a39420df875b16f
name: 1012E76D81C232308A39420DF875B16F.mlw
sha1: d6ae0ac08ea9378afecea725b19318571c215110
sha256: faee3579db8d247dcdc7da051188faee13bc28626ac27c4e8e1c38838e84f466
sha512: 2152a10fe63b2d2aa6a953222d97c5df9c30420f49f8ee29ea8732d9cbff8aa613ef90d73ac29f7d1c2fd290c3184581873735d9dcf2d3a43bb1414de06e26ac
ssdeep: 96:DV8ut4air44KyzgjPtboyn+CGos+7gls1wv77lI9HgmbX+:DVxbn4Ky4P1oyn+LoN+siv7K3bu
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan-Ransom.Win32.Blocker.hrft also known as:

K7AntiVirusTrojan ( 004020ef1 )
Elasticmalicious (high confidence)
DrWebBackDoor.Comet.152
CynetMalicious (score: 100)
ALYacBackdoor.Generic.755288
CylanceUnsafe
SangforTrojan.Win32.Wacatac.B
AlibabaRansom:Win32/Blocker.cec5b9c3
K7GWTrojan ( 004020ef1 )
Cybereasonmalicious.d81c23
BaiduWin32.Trojan-Dropper.Agent.ca
CyrenW32/Agent.NXNL-3094
SymantecSMG.Heur!gen
ESET-NOD32Win32/TrojanDropper.Agent.PYN
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Trojan.Agent-427541
KasperskyTrojan-Ransom.Win32.Blocker.hrft
BitDefenderBackdoor.Generic.755288
NANO-AntivirusTrojan.Win32.Comet.haynlw
ViRobotTrojan.Win32.Z.Agent.20480.JMY
MicroWorld-eScanBackdoor.Generic.755288
TencentTrojan-Ransom.Win32.Blocker.a
Ad-AwareBackdoor.Generic.755288
SophosMal/Generic-S
ComodoTrojWare.Win32.Agent.pyn@54cqtm
BitDefenderThetaGen:NN.ZexaF.34684.bqW@am8R9Sk
VIPRETrojan-Dropper.Win32.Effbee.a (v)
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.1012e76d81c23230
EmsisoftBackdoor.Generic.755288 (B)
JiangminBackdoor/DarkKomet.kwk
AviraTR/ATRAPS.Gen
eGambitUnsafe.AI_Score_63%
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Ditertag.A
AegisLabTrojan.Win32.Blocker.tnqj
GDataWin32.Trojan-Dropper.BeiF.A
AhnLab-V3Backdoor/Win32.DarkKomet.R48242
McAfeeGenericRXAA-AA!1012E76D81C2
MAXmalware (ai score=86)
VBA32Hoax.Blocker
PandaTrj/CI.A
TrendMicro-HouseCallRansom_Blocker.R002C0ODK21
RisingRansom.Blocker!8.12A (CLOUD)
YandexTrojan.GenAsa!N71EllaXIy8
IkarusBackdoor.Win32.SuspectCRC
MaxSecureTrojan.Malware.8756622.susgen
FortinetW32/Dropper.PYN!tr
AVGWin32:Malware-gen

How to remove Trojan-Ransom.Win32.Blocker.hrft?

Trojan-Ransom.Win32.Blocker.hrft removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment