Malware

Win32/LockScreen.AQS removal instruction

Malware Removal

The Win32/LockScreen.AQS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/LockScreen.AQS virus can do?

  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Unconventionial language used in binary resources: Russian
  • Sniffs keystrokes
  • Steals private information from local Internet browsers
  • Attempts to modify proxy settings
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine Win32/LockScreen.AQS?


File Info:

crc32: 24DE17C1
md5: c3c6f28b2c8393416e7b1910220ee1e7
name: C3C6F28B2C8393416E7B1910220EE1E7.mlw
sha1: 11a5da3231ed4ae8378cb70bf2fd6406e5c0e2d0
sha256: 80978264be64c8326f6683769a831366e5eeeb7397c85e237d538919e815398c
sha512: d59f3d1c37bbc6e455bee77e6fc0a152e4f338347a7a05609f219c16142bfab23aaadee0dbc114f53e886004d85b0e87ffd8328ff8287ca001a584a385b9c4b8
ssdeep: 12288:nXBGG01oDKrj5Q2tzlAW7aBKcrpBzJ8bYvPXBGa:nxX04Krj5HdhyrLttnxR
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/LockScreen.AQS also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 00423d861 )
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.31287811
CylanceUnsafe
SangforTrojan.Win32.Save.a
AlibabaRiskWare:Win32/BadJoke.f0fb07f6
K7GWTrojan ( 00423d861 )
Cybereasonmalicious.b2c839
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/LockScreen.AQS
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Dropper.Hoax-9843324-0
KasperskyHoax.Win32.BadJoke.FakeBlocker.r
BitDefenderTrojan.GenericKD.31287811
NANO-AntivirusRiskware.Win32.FakeBlocker.cxthxs
MicroWorld-eScanTrojan.GenericKD.31287811
TencentWin32.Trojan-psw.Badjoke.Szbi
Ad-AwareTrojan.GenericKD.31287811
SophosGeneric PUA BB (PUA)
ComodoMalware@#3ucw2xay3moye
BitDefenderThetaGen:NN.ZelphiF.34628.KGZ@aSyC0Pfc
McAfee-GW-EditionBehavesLike.Win32.Worm.hh
FireEyeGeneric.mg.c3c6f28b2c839341
EmsisoftTrojan.GenericKD.31287811 (B)
SentinelOneStatic AI – Malicious PE
JiangminHoax.BadJoke.efo
AviraHEUR/AGEN.1111033
MicrosoftRansom:Win32/Blocker
ArcabitTrojan.Generic.D1DD6A03
AegisLabHacktool.Win32.BadJoke.3!c
GDataTrojan.GenericKD.31287811
AhnLab-V3Unwanted/Win32.BadJoke.C2764014
McAfeeArtemis!C3C6F28B2C83
MAXmalware (ai score=100)
VBA32Trojan-Ransom.Winlock.gen
PandaTrj/CI.A
RisingHoax.BadJoke!8.41C (CLOUD)
IkarusTrojan-Ransom.Delf
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/LockScreen.APP!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Generic.HwUBEpsA

How to remove Win32/LockScreen.AQS?

Win32/LockScreen.AQS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment