Ransom Trojan

Trojan-Ransom.Win32.Blocker.shsq information

Malware Removal

The Trojan-Ransom.Win32.Blocker.shsq is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Blocker.shsq virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Executed a process and injected code into it, probably while unpacking
  • Sniffs keystrokes
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Anomalous binary characteristics

Related domains:

sunray1975.zapto.org

How to determine Trojan-Ransom.Win32.Blocker.shsq?


File Info:

crc32: 904D0DCF
md5: 6d8578f07844fa2b50ae21e1d09439ca
name: 6D8578F07844FA2B50AE21E1D09439CA.mlw
sha1: 8aa4f2630457e18897ed6246594c31e5ee657014
sha256: e3e60314ac1dd72d85e3152184c14ff134d055b433d8a1969db6152efff9f1d3
sha512: 4af4cb8592bb6a6bb25bc7683e7ad72685890f625230d9ee5af619e83a96970e25d3f4b01a2e7136c98a4f211263946faf5e1a28ae0b010690783ab0cd4d3f24
ssdeep: 393216:ug7umg7umg7umg7umg7umg7umg7umg7uv:jSrSrSrSrSrSrSrSv
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan-Ransom.Win32.Blocker.shsq also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 00548e051 )
LionicTrojan.Win32.Malicious.4!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader6.7779
CynetMalicious (score: 100)
CAT-QuickHealTrojan.WacatacPMF.S16539689
ALYacGen:Variant.Symmi.34741
CylanceUnsafe
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojan:Win32/Starter.ali1001008
K7GWTrojan ( 00548e051 )
Cybereasonmalicious.07844f
CyrenW32/Injector.OZVT-2500
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.AHHO
APEXMalicious
AvastWin32:MBRlock-DV [Trj]
ClamAVWin.Trojan.Mbrlock-9779766-0
KasperskyTrojan-Ransom.Win32.Blocker.shsq
BitDefenderGen:Variant.Symmi.34741
NANO-AntivirusTrojan.Win32.Dapato.bsjzfg
MicroWorld-eScanGen:Variant.Symmi.34741
TencentTrojan.Win32.Blocker.zg
Ad-AwareGen:Variant.Symmi.34741
SophosML/PE-A + Troj/Agent-BFYB
ComodoTrojWare.Win32.Injector.HO@82j6jo
BitDefenderThetaGen:NN.ZelphiF.34294.@JZ@aCG1cho
TrendMicroTROJ_GEN.R002C0DKI21
McAfee-GW-EditionBehavesLike.Win32.Generic.wc
FireEyeGeneric.mg.6d8578f07844fa2b
EmsisoftGen:Variant.Symmi.34741 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Blocker.pkq
AviraDR/Delphi.Gen
eGambitUnsafe.AI_Score_96%
Antiy-AVLTrojan/Generic.ASMalwS.30ED84C
MicrosoftTrojan:Win32/Injector.INK!MTB
ArcabitTrojan.Symmi.D87B5
GDataWin32.Trojan.PSE.13Q4XMA
TACHYONBackdoor/W32.Androm.16633856
AhnLab-V3Dropper/Win32.Dapato.R83155
Acronissuspicious
McAfeeGenericRXIP-BJ!6D8578F07844
MAXmalware (ai score=86)
VBA32Trojan.Downloader
MalwarebytesTrojan.Crypt
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0DKI21
RisingTrojan.Injector!1.DA56 (CLASSIC)
YandexTrojan.Injector!nfedw5apY3U
IkarusTrojan-Ransom.Blocker
MaxSecureTrojan.Malware.127245458.susgen
FortinetW32/Injector.AHHO!tr
AVGWin32:MBRlock-DV [Trj]
Paloaltogeneric.ml

How to remove Trojan-Ransom.Win32.Blocker.shsq?

Trojan-Ransom.Win32.Blocker.shsq removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment