Malware

Win32/LockScreen.BFA removal guide

Malware Removal

The Win32/LockScreen.BFA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/LockScreen.BFA virus can do?

  • Creates RWX memory
  • Unconventionial language used in binary resources: Russian
  • Installs itself for autorun at Windows startup
  • Anomalous binary characteristics

How to determine Win32/LockScreen.BFA?


File Info:

crc32: 32B06B6A
md5: 6b5183897cb109886ad97642eae72fe4
name: 6B5183897CB109886AD97642EAE72FE4.mlw
sha1: 27ede109b7ef5f8970f3d49c7b6a13c91e55714e
sha256: 7048c8a0058714f2df0d5ed3aeb231934975fc992be5ff04526c6e1b5541ed1b
sha512: 03c390ebcb59c7ea1f1eeeab8d2950d6fdb4fa136c523eb8d23d6a8d937c581467888c344d53984f352f9ff6c27eff77a01bf6c53d1ff228219c2d2dfcd7e396
ssdeep: 24576:/ZojQ8U1WLW/A8lzjdrz7z1B+ZxLMSTC2H:hojQ7vpBOtTH
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/LockScreen.BFA also known as:

K7AntiVirusRiskware ( 0040eff71 )
DrWebTrojan.Siggen5.9842
CylanceUnsafe
ZillyaTrojan.LockScreen.Win32.9133
SangforTrojan.Win32.Symmi.frZX
AlibabaRansom:Win32/LockScreen.8589b69a
K7GWRiskware ( 0040eff71 )
CyrenW32/Trojan.HUWK-7357
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/LockScreen.BFA
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Gimemo.azwg
NANO-AntivirusTrojan.Win32.Gimemo.cxyysm
TencentWin32.Trojan.Gimemo.Wpth
SophosMal/Generic-S
ComodoMalware@#atr4nlftqa3i
BitDefenderThetaGen:NN.ZelphiF.34678.8GW@aWk0k4cI
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Dropper.dh
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:Win32/LockScreen.CZ
AhnLab-V3Trojan/Win32.LockScreen.R118255
McAfeeArtemis!6B5183897CB1
MAXmalware (ai score=100)
VBA32TScope.Trojan.Delf
PandaGeneric Malware
RisingRansom.LockScreen!8.83D (CLOUD)
IkarusTrojan.VkHost
FortinetW32/LockScreen.ALF!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.PornoBlocker.HwUBEpsA

How to remove Win32/LockScreen.BFA?

Win32/LockScreen.BFA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment