Ransom Trojan

Trojan-Ransom.Win32.Blocker.klcu malicious file

Malware Removal

The Trojan-Ransom.Win32.Blocker.klcu is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Blocker.klcu virus can do?

  • Anomalous binary characteristics

How to determine Trojan-Ransom.Win32.Blocker.klcu?


File Info:

crc32: B08F2734
md5: 655bbcb046c8107552a073668eeb4442
name: 655BBCB046C8107552A073668EEB4442.mlw
sha1: 7ba0e5d457dab558762236f7f65d65b1d95c9c97
sha256: 0420ed1ce5f6c2f0a6229463fd97b1ffe90567d921a76bfe3d0f242e8e148de0
sha512: 303dd4408df7b06b39e25d38235f4c5537c14f2c6af544eee9e9d8e82c4aace44662366fa5b4e51e1debae07e48194eedb58b36ff08891c945e9d7cee6e91094
ssdeep: 3072:ADKW1LgppLRHMY0TBfJvjcTp5X3KZmVix+SeAp9Z:ADKW1Lgbdl0TBBvjc/6ZmYuAx
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2017
Assembly Version: 1.0.0.0
InternalName: NewtonMarkViewer.exe
FileVersion: 1.0.0.0
ProductName: NewtonMarkViewer
ProductVersion: 1.0.0.0
FileDescription: NewtonMarkViewer
OriginalFilename: NewtonMarkViewer.exe

Trojan-Ransom.Win32.Blocker.klcu also known as:

BkavW32.AIDetect.malware2
K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.6178488
ALYacTrojan.GenericKD.6178488
CylanceUnsafe
ZillyaTrojan.Blocker.Win32.62201
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderTrojan.GenericKD.6178488
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.046c81
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyTrojan-Ransom.Win32.Blocker.klcu
AlibabaRansom:Win32/Blocker.7500ca48
NANO-AntivirusTrojan.Win32.Blocker.euykvy
SUPERAntiSpywareTrojan.Agent/Gen-MSIL
TencentWin32.Trojan.Blocker.Wnmp
Ad-AwareTrojan.GenericKD.6178488
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34608.lq0@aeSmKpm
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
FireEyeGeneric.mg.655bbcb046c81075
EmsisoftTrojan.GenericKD.6178488 (B)
eGambitUnsafe.AI_Score_99%
ArcabitTrojan.Generic.D5E46B8
AegisLabTrojan.Multi.Generic.4!c
GDataTrojan.GenericKD.6178488
Acronissuspicious
McAfeeArtemis!655BBCB046C8
MAXmalware (ai score=82)
VBA32Trojan-Ransom.Blocker
RisingTrojan.Kryptik!1.C864 (CLOUD)
SentinelOneStatic AI – Suspicious PE
FortinetW32/Blocker.KLCU!tr
PandaTrj/CI.A
Qihoo-360Win32/Trojan.Ransom.f63

How to remove Trojan-Ransom.Win32.Blocker.klcu?

Trojan-Ransom.Win32.Blocker.klcu removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment