Ransom

What is “Generic.Ransom.BTCWare.F26EB051”?

Malware Removal

The Generic.Ransom.BTCWare.F26EB051 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.BTCWare.F26EB051 virus can do?

  • A process attempted to delay the analysis task.
  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Uses Windows utilities for basic functionality
  • Attempts to delete volume shadow copies
  • Modifies boot configuration settings
  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Writes a potential ransom message to disk
  • Likely virus infection of existing system binary
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

How to determine Generic.Ransom.BTCWare.F26EB051?


File Info:

crc32: 871B7321
md5: 58b71fbd90c65101df2a2e8dfd2f1378
name: 58B71FBD90C65101DF2A2E8DFD2F1378.mlw
sha1: 2387ee07148b5b3112e4a99f7000c86b9050a730
sha256: 912811a375662509f01a0558aba547950bdad8e03fb592ed2bccdad786490e5a
sha512: cbf6654f40b72b0e719af74209ba0203b7ed357885996f228cfa22b0e48ca3866677601109814926599392f88ecaf41d97692fcc49c4dc90f60e7d810a4bb330
ssdeep: 3072:LzdIg7CkL4jClw8VjdmJffcEg5YT4S1UgvsaH4v7+9:tBEjaDWUE5ZZH
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Generic.Ransom.BTCWare.F26EB051 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0050b0f71 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.11958
ClamAVWin.Ransomware.BTCWare-6329927-0
ALYacTrojan.Ransom.BTCWare
ZillyaTrojan.Filecoder.Win32.5210
Alibabavirus:Win32/InfectPE.ali2000007
K7GWTrojan ( 0050b0f71 )
Cybereasonmalicious.d90c65
SymantecRansom.BTCware
ESET-NOD32a variant of Win32/Filecoder.BTCware.D
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.Ransom.BTCWare.F26EB051
NANO-AntivirusTrojan.Win32.Bitcovar.eziovt
MicroWorld-eScanGeneric.Ransom.BTCWare.F26EB051
TencentTrojan.Win32.BTCWare.a
Ad-AwareGeneric.Ransom.BTCWare.F26EB051
SophosMal/Generic-R + Troj/Btcware-A
ComodoMalware@#2fxxooyfx2k8v
BitDefenderThetaAI:Packer.F5383AE01F
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
FireEyeGeneric.mg.58b71fbd90c65101
EmsisoftGeneric.Ransom.BTCWare.F26EB051 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.azoym
WebrootW32.Compromisedrdp.Ransomware
AviraHEUR/AGEN.1122952
eGambitUnsafe.AI_Score_99%
MicrosoftRansom:Win32/Betisrypt!rfn
GDataWin32.Trojan-Ransom.BTCWare.F
AhnLab-V3Trojan/Win32.Scatter.C1956229
McAfeeArtemis!58B71FBD90C6
MAXmalware (ai score=100)
VBA32BScope.Trojan.Agentb
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_BTCWARE.F117EN
RisingRansom.Betisrypt!8.E6B2 (CLOUD)
YandexTrojan.GenAsa!avPO/XVNMxQ
IkarusTrojan-Ransom.BTCWare
FortinetW32/Generic.AP.DD9B4!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Generic.Ransom.BTCWare.F26EB051?

Generic.Ransom.BTCWare.F26EB051 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment