Categories: RansomTrojan

How to remove “Trojan-Ransom.Win32.Gen.qlw”?

The Trojan-Ransom.Win32.Gen.qlw is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Gen.qlw virus can do?

  • Authenticode signature is invalid

How to determine Trojan-Ransom.Win32.Gen.qlw?


File Info:

name: E7C2B45F711C21E76194.mlwpath: /opt/CAPEv2/storage/binaries/bc67a27e3b3643a17bd918bc5632e93029e664e3092d8579103f99bf3c81900bcrc32: 489048B6md5: e7c2b45f711c21e7619422942e2cda34sha1: 38fb61a886cab5db19b8223d524dce8be9cf4422sha256: bc67a27e3b3643a17bd918bc5632e93029e664e3092d8579103f99bf3c81900bsha512: aa45c37c91aa1b14d890a1b59d1b676882081e0d0e0f72c2aaeeac1cb09c558dc07e1ef04577ad979b9be3c3d2974a3943de0367237d2fb3974068bf3a43315essdeep: 1536:+D/DrGKmEfutw5mzIwLyLaIBWUtsOnBEnuhz4UL5vW1C7sVshDENd:U/Dy/EfQbdLacUymEnK4ODAVsK7type: PE32 executable (GUI) Intel 80386, for MS Windowstlsh: T1FA934C12F6D744F1D3026B322C9C3BBADBB2E95D9F255FA313A8DC381562281A43F195sha3_384: d4e4797143a796088960c2bd88bcf50d3188a86ad74e4374b946d313d5895efb5852a1a8b7201b71b3da9df70b478a44ep_bytes: 558bec6aff68101441006866f6400064timestamp: 2012-01-31 22:40:15

Version Info:

FileDescription: XML ExtractorFileVersion: 6, 5, 2, 0ProductVersion: 6, 5, 2, 0ProductName: TrustedLink WindowsLegalCopyright: Copyright (c) 2010LegalTrademarks: InternalName: EXTXMLOriginalFilename: EXTXML.EXETranslation: 0x0409 0x04b0

Trojan-Ransom.Win32.Gen.qlw also known as:

Lionic Trojan.Win32.Gen.j!c
MicroWorld-eScan Trojan.GenericKD.38624283
ALYac Trojan.GenericKD.38624283
Cylance Unsafe
Alibaba Ransom:Win32/Generic.c11fefdf
APEX Malicious
Kaspersky Trojan-Ransom.Win32.Gen.qlw
BitDefender Trojan.GenericKD.38624283
Avast FileRepMalware [Misc]
Ad-Aware Trojan.GenericKD.38624283
Emsisoft Trojan.GenericKD.38624283 (B)
Comodo Malware@#pu576nem9lml
VIPRE Trojan.GenericKD.38624283
TrendMicro Ransom_Gen.R002C0PJG22
McAfee-GW-Edition RDN/Ransom
FireEye Trojan.GenericKD.38624283
Sophos Mal/Generic-R
Jiangmin Trojan.Gen.bpa
Avira TR/DelFile.psvbc
Antiy-AVL Trojan[Ransom]/Win32.Gen
Arcabit Trojan.Generic.D24D5C1B
ZoneAlarm Trojan-Ransom.Win32.Gen.qlw
GData Trojan.GenericKD.38624283
McAfee RDN/Ransom
MAX malware (ai score=87)
TrendMicro-HouseCall Ransom_Gen.R002C0PJG22
Tencent Win32.Trojan.Gen.Psmw
MaxSecure Trojan.Malware.73774235.susgen
AVG FileRepMalware [Misc]
Panda Trj/GdSda.A

How to remove Trojan-Ransom.Win32.Gen.qlw?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

Malware.AI.1560801952 malicious file

The Malware.AI.1560801952 is considered dangerous by lots of security experts. When this infection is active,…

14 mins ago

Malware.AI.3778280684 removal tips

The Malware.AI.3778280684 is considered dangerous by lots of security experts. When this infection is active,…

19 mins ago

Should I remove “Jalapeno.777”?

The Jalapeno.777 is considered dangerous by lots of security experts. When this infection is active,…

19 mins ago

MSIL/Kryptik.ALMH (file analysis)

The MSIL/Kryptik.ALMH is considered dangerous by lots of security experts. When this infection is active,…

25 mins ago

Should I remove “Trojan.Win32.Agent.xbmkrx”?

The Trojan.Win32.Agent.xbmkrx is considered dangerous by lots of security experts. When this infection is active,…

49 mins ago

Tedy.179306 removal guide

The Tedy.179306 is considered dangerous by lots of security experts. When this infection is active,…

50 mins ago