Malware

How to remove “Mal/EncPk-BA”?

Malware Removal

The Mal/EncPk-BA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/EncPk-BA virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Mal/EncPk-BA?


File Info:

crc32: 8EFF7ACD
md5: 75b1d211542c2401ecce03434d30acfb
name: huiseanniu.exe
sha1: fba3cf0988091d177b0588ed3570ea365c865626
sha256: a37b87b1a04d4d951216720045d142bc1b265d5c407c84d85458ef6aea776f97
sha512: fecada524f43699fcde6179055ee3156674c62d8f20b3d98286a48bb958c90a27435b9ca59eedfce405132752f237e0ba044bc41d6cda0ff7ff24bdc041f6086
ssdeep: 1536:3YJ5cVt8M2rRgEwKGY/+wcJ+HrnWNsHbyaPLQUpSV2s46lSgauZ9aIj4NfTSk+V7:i42ig+/JAWKHnzNSEbsSBuZ8dfKMg
type: MS-DOS executable

Version Info:

0: [No Data]

Mal/EncPk-BA also known as:

BkavW32.AIDetectVM.malware5
ClamAVWin.Trojan.Agent-666944
FireEyeGeneric.mg.75b1d211542c2401
CAT-QuickHealTrojanPWS.Prast
McAfeePWS-LegMir.cr
CylanceUnsafe
ZillyaTrojan.Agent.Win32.193274
SangforMalware
K7AntiVirusTrojan ( 003c84cb1 )
BitDefenderTrojan.GenericKD.42202628
K7GWTrojan ( 003c84cb1 )
Cybereasonmalicious.988091
Invinceaheuristic
SymantecML.Attribute.HighConfidence
APEXMalicious
CynetMalicious (score: 100)
GDataTrojan.GenericKD.42202628
AlibabaTrojanPSW:Win32/Generic.3ca8ca20
NANO-AntivirusTrojan.Win32.Legmir.deaqpo
AegisLabTrojan.Win32.LegMir.4!c
MicroWorld-eScanTrojan.GenericKD.42202628
RisingMalware.PWS!8.144 (CLOUD)
Ad-AwareTrojan.GenericKD.42202628
EmsisoftTrojan.GenericKD.42202628 (B)
ComodoPacked.Win32.Packer.~GEN@1oh172
DrWebTrojan.PWS.Legmir.2034
VIPRETrojan.Win32.Generic!BT
Trapminemalicious.high.ml.score
SophosMal/EncPk-BA
SentinelOneDFI – Suspicious PE
F-ProtW32/Heuristic-162!Eldorado
JiangminTrojan/PSW.OnLineGames.bknn
MAXmalware (ai score=59)
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D283F604
MicrosoftPWS:Win32/Prast!rfn
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34130.fiWeaO6vI1bb
ALYacTrojan.GenericKD.42202628
TACHYONTrojan/W32.Packed.96044
VBA32TrojanPWS.Legmir
MalwarebytesHackTool.Patcher
YandexTrojanSpy.Agent!QTSS1Q/NhC4
IkarusWorm.MSIL
eGambitUnsafe.AI_Score_100%
FortinetPossibleThreat
WebrootW32.Infostealer.Gen
AVGWin32:Trojan-gen
PandaTrj/Legmir.AJQ
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Mal/EncPk-BA?

Mal/EncPk-BA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment