Win32/LockScreen [Threat Name] go to Threat

Win32/LockScreen.AKI [Threat Variant Name]

Category trojan
Size 365056 B
Aliases Hoax.Win32.BadJoke.FakeKAV.axu (Kaspersky)
  Trojan:Win32/Comroki (Microsoft)
Short description

Win32/LockScreen.AKI is a trojan that blocks access to the Windows operating system.

Installation

When executed, the trojan copies itself into the following location:

  • %appdata%\­calc.exe

In order to be executed on every system start, the trojan sets the following Registry entry:

  • [HKEY_CURRENT_USER\­Software\­Microsoft\­Windows\­CurrentVersion\­Run]
    • "CFTMON.EXE" = "%appdata%\­calc.exe"
Other information

Win32/LockScreen.AKI is a trojan that blocks access to the Windows operating system.


The trojan displays the following dialog box:

To regain access to the operating system the user is requested to comply with given conditions in exchange for a password/instructions.


The password to regain access to the operating system is one of the following:

  • pizda

Please enable Javascript to ensure correct displaying of this content and refresh this page.