Ransom Trojan

How to remove “Trojan-Ransom.Win32.PinkBlocker.anq”?

Malware Removal

The Trojan-Ransom.Win32.PinkBlocker.anq is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.PinkBlocker.anq virus can do?

  • Unconventionial binary language: Russian
  • Unconventionial language used in binary resources: Russian
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan-Ransom.Win32.PinkBlocker.anq?


File Info:

crc32: A5239F1D
md5: 6b697fabb32cb5901d76fee15792ef31
name: 6B697FABB32CB5901D76FEE15792EF31.mlw
sha1: 802b3616a6c38fd830affd02912df81db18cf936
sha256: d63f4f7d4e726abe4a7ef1876584e5cefa840d425e98d54f422216debf796f65
sha512: 26bdacfb9d51faba51fb7f5d0e2aada87342ad893d4fcd90477cd1b31456a27ddc9ca2c0176288956ba64500834cc4b75891bb15c90ecce9de48f30d7515d822
ssdeep: 768:pBFb8xP6hLEV7LQ/ei/Jw1juuP4hK6lpqyTAv:DFW4/vSJtP47jT6
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2009
InternalName: kstywpcnauf
FileVersion: 5, 131, 125, 1111
ProductName: kstywpcnauf
ProductVersion: 5, 131, 125, 1111
FileDescription: kstywpcnauf
OriginalFilename: kstywpcnauf
Translation: 0x0419 0x04b0

Trojan-Ransom.Win32.PinkBlocker.anq also known as:

K7AntiVirusRiskware ( 0040eff71 )
LionicTrojan.Win32.PinkBlocker.j!c
DrWebTrojan.Winlock.9060
CynetMalicious (score: 100)
ALYacGen:Variant.Symmi.65063
CylanceUnsafe
ZillyaTrojan.PinkBlocker.Win32.1675
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaRansom:Win32/PinkBlocker.421f93d2
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.bb32cb
CyrenW32/S-8b00cf7e!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Adware-gen [Adw]
KasperskyTrojan-Ransom.Win32.PinkBlocker.anq
BitDefenderGen:Variant.Symmi.65063
NANO-AntivirusVirus.Win32.Gen.ccmw
ViRobotTrojan.Win32.A.PinkBlocker.24064
MicroWorld-eScanGen:Variant.Symmi.65063
TencentWin32.Trojan.Pinkblocker.Wqdl
Ad-AwareGen:Variant.Symmi.65063
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34170.cu0@a4mq8Cik
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.6b697fabb32cb590
EmsisoftGen:Variant.Symmi.65063 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan/PinkBlocker.st
AviraADWARE/Adware.Gen3
Antiy-AVLTrojan/Generic.ASMalwS.352A6D
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Bojotuc.A
GDataGen:Variant.Symmi.65063
McAfeeArtemis!6B697FABB32C
MAXmalware (ai score=99)
VBA32Hoax.PinkBlocker
PandaGeneric Malware
RisingTrojan.Generic@ML.98 (RDML:j+Vet0SGdub4fVyuM14qbg)
YandexTrojan.PinkBlocker!8glpw2HH2tQ
IkarusTrojan-Ransom.PinkBlocker
FortinetW32/PinkBlocker.A!tr
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Trojan-Ransom.Win32.PinkBlocker.anq?

Trojan-Ransom.Win32.PinkBlocker.anq removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment