Ransom Trojan

Should I remove “Trojan-Ransom.Win32.Blocker.jxpm”?

Malware Removal

The Trojan-Ransom.Win32.Blocker.jxpm is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Blocker.jxpm virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan-Ransom.Win32.Blocker.jxpm?


File Info:

crc32: 8938A080
md5: 2f1734f84b7e921ab3174e9c3194d985
name: 2F1734F84B7E921AB3174E9C3194D985.mlw
sha1: 9926a0d5a440bdb874281fb8394dd5b188693868
sha256: b76fe3082b4206c8b20240fa01cf011b6190061f9b29209c13a7f93309c905b7
sha512: f966b712a3842f34d5660ee4be89db77a31d8bd3c8660171d2b8dfb083121137c893233e363121e649a6f11a000b50ea8de04a50d1b272f726ab83c54b56919c
ssdeep: 6144:9CfXymjW/wW8LaV33t6x9c+ez1oMjwMDt/r6A0wTwl+S4LttOU1yNf:QPjWYW8L83PQqtWyc+S4L6IMf
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Trojan-Ransom.Win32.Blocker.jxpm also known as:

BkavW32.AIDetect.malware2
K7AntiVirusPassword-Stealer ( 004d88671 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebWin32.HLLW.Autoruner.25074
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.4506053
CylanceUnsafe
ZillyaDropper.Agent.Win32.383792
SangforRansom.Win32.Blocker.jxpm
CrowdStrikewin/malicious_confidence_100% (D)
K7GWPassword-Stealer ( 004d88671 )
Cybereasonmalicious.84b7e9
SymantecRansom.Cerber
ESET-NOD32Win32/PSW.Fareit.L
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Blocker.jxpm
BitDefenderTrojan.GenericKD.4506053
NANO-AntivirusTrojan.Nsis.Blocker.embpso
MicroWorld-eScanTrojan.GenericKD.4506053
TencentWin32.Trojan.Blocker.Hrzb
Ad-AwareTrojan.GenericKD.4506053
SophosML/PE-A + Mal/Cerber-AA
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Cerber.fc
FireEyeGeneric.mg.2f1734f84b7e921a
EmsisoftTrojan.GenericKD.4506053 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Generic.bgyzr
AviraTR/Dropper.Gen
MicrosoftTrojan:Win32/Glupteba!ml
ArcabitTrojan.Generic.D44C1C5
GDataTrojan.GenericKD.4506053
McAfeeArtemis!2F1734F84B7E
MAXmalware (ai score=88)
VBA32Trojan-Ransom.Blocker
PandaTrj/CI.A
FortinetW32/Injector.UI!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Blocker.HyoDNU8A

How to remove Trojan-Ransom.Win32.Blocker.jxpm?

Trojan-Ransom.Win32.Blocker.jxpm removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment