Ransom Trojan

Trojan-Ransom.Win32.Blocker.jiid removal

Malware Removal

The Trojan-Ransom.Win32.Blocker.jiid is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Blocker.jiid virus can do?

  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Russian
  • Network activity detected but not expressed in API logs

How to determine Trojan-Ransom.Win32.Blocker.jiid?


File Info:

crc32: 807EF180
md5: c0f794cfba54fe12ef75a6dfb7b63a10
name: C0F794CFBA54FE12EF75A6DFB7B63A10.mlw
sha1: d7db08ec5aef0a6038ddfd59bc70e18817fccfcb
sha256: 430e1f592a38b1047fabd1912a54a9b83c855211fb46b11fe8eeda720a9ce566
sha512: a6dd595829f809da9ff0e915202e6f220a5906ae3fdec6b72ac006ecd4909a556244a26d2a49a0ef479347eba334385323c75d9fa69a929b6e1d6bec10e8c6c9
ssdeep: 12288:qK2mhAMJ/cPlzuToSCe0OUqX33Pt6N5hVAi4ZwGoHVa:b2O/Glz8/jB316NbVAQHw
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan-Ransom.Win32.Blocker.jiid also known as:

K7AntiVirusRiskware ( 0040eff71 )
LionicTrojan.Win32.Blocker.j!c
DrWebTrojan.DownLoader22.4500
CynetMalicious (score: 99)
ALYacTrojan.Rasftuby.Gen.10
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Blocker.17eac8e9
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.fba54f
CyrenW32/Fynloski.D.gen!Eldorado
SymantecTrojan.Gen.MBT
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Blocker.jiid
BitDefenderTrojan.Rasftuby.Gen.10
NANO-AntivirusTrojan.Win32.DarkKomet.eeknxi
MicroWorld-eScanTrojan.Rasftuby.Gen.10
TencentWin32.Trojan.Blocker.Szbj
Ad-AwareTrojan.Rasftuby.Gen.10
SophosMal/Generic-R + Mal/RarMal-E
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Dropper.gc
FireEyeTrojan.Rasftuby.Gen.10
EmsisoftTrojan.Rasftuby.Gen.10 (B)
AviraTR/Patched.Gen
MicrosoftTrojanDropper:Win32/Slipafext.A
ArcabitTrojan.Rasftuby.Gen.10
ZoneAlarmTrojan.Win32.Agent.gen
GDataTrojan.Rasftuby.Gen.10
McAfeeArtemis!C0F794CFBA54
MAXmalware (ai score=81)
PandaTrj/CI.A
IkarusJS.Agent
MaxSecureWin.MxResIcn.Heur.Gen
FortinetW32/Blocker.E!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan-Ransom.Win32.Blocker.jiid?

Trojan-Ransom.Win32.Blocker.jiid removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment