Ransom Trojan

Trojan-Ransom.Win32.Blocker.rjvf removal guide

Malware Removal

The Trojan-Ransom.Win32.Blocker.rjvf is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Blocker.rjvf virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Executed a process and injected code into it, probably while unpacking
  • Sniffs keystrokes
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Creates a slightly modified copy of itself
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
sunray1975.zapto.org

How to determine Trojan-Ransom.Win32.Blocker.rjvf?


File Info:

crc32: 640E704E
md5: d3a378014b3f858a9f3dc0afe32e2ca9
name: D3A378014B3F858A9F3DC0AFE32E2CA9.mlw
sha1: 5002d147b5e45e522b1137b756fee69010e0ce2e
sha256: af245833cf3a8447b2d1146d3f1f674f2764ea17184cd6634db8e54e31d035ba
sha512: a70bffe25ae4eb017f100e60bb08e40c8038722548f7fbd4452028efbe581454404b3fe90be2b7e532dba87de92b819ac00bb1832e01486c08a0967aa87c6295
ssdeep: 196608:0/azg7DS8/azg7DS8/azg7DS8/azg7DSv:/g7u3g7u3g7u3g7uv
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan-Ransom.Win32.Blocker.rjvf also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 00548e051 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader6.7779
ClamAVWin.Trojan.Mbrlock-9779766-0
CAT-QuickHealTrojan.WacatacPMF.S16539689
McAfeeGenericRXIP-BJ!D3A378014B3F
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojan:Win32/Starter.ali1001008
K7GWTrojan ( 00548e051 )
Cybereasonmalicious.14b3f8
CyrenW32/Injector.OZVT-2500
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.AHHO
APEXMalicious
AvastWin32:MBRlock-DV [Trj]
CynetMalicious (score: 100)
KasperskyTrojan-Ransom.Win32.Blocker.rjvf
BitDefenderGen:Variant.Symmi.34741
NANO-AntivirusTrojan.Win32.Dapato.bsjzfg
MicroWorld-eScanGen:Variant.Symmi.34741
TencentTrojan.Win32.Blocker.zg
Ad-AwareGen:Variant.Symmi.34741
SophosML/PE-A + Troj/Agent-BFYB
ComodoTrojWare.Win32.Injector.HO@82j6jo
BitDefenderThetaAI:Packer.9896AD8521
TrendMicroTROJ_GEN.R03BC0PKA21
McAfee-GW-EditionBehavesLike.Win32.Generic.wc
FireEyeGeneric.mg.d3a378014b3f858a
EmsisoftGen:Variant.Symmi.34741 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Blocker.pkq
AviraDR/Delphi.Gen
Antiy-AVLTrojan/Generic.ASMalwS.30ED84C
MicrosoftTrojan:Win32/Injector.INK!MTB
GDataWin32.Trojan.PSE.1UHCZJG
TACHYONBackdoor/W32.Androm.8316928
AhnLab-V3Dropper/Win32.Dapato.R83155
Acronissuspicious
VBA32Trojan.Downloader
MAXmalware (ai score=81)
MalwarebytesTrojan.Crypt
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R03BC0PKA21
RisingTrojan.Injector!1.DA56 (CLASSIC)
YandexTrojan.Injector!nfedw5apY3U
IkarusTrojan-Ransom.Blocker
MaxSecureTrojan.Malware.127304917.susgen
FortinetW32/Injector.AHHO!tr
AVGWin32:MBRlock-DV [Trj]
Paloaltogeneric.ml

How to remove Trojan-Ransom.Win32.Blocker.rjvf?

Trojan-Ransom.Win32.Blocker.rjvf removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment