Ransom

Ransom:MSIL/Filecoder.DZ!MTB removal instruction

Malware Removal

The Ransom:MSIL/Filecoder.DZ!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom:MSIL/Filecoder.DZ!MTB virus can do?

  • Network activity detected but not expressed in API logs

How to determine Ransom:MSIL/Filecoder.DZ!MTB?


File Info:

crc32: 9C5E1D4B
md5: fe7dcc0f74e152a78963d560b2e3d148
name: FE7DCC0F74E152A78963D560B2E3D148.mlw
sha1: f9cf1dd1a7e8b2dffc9e0195685cef5a625832ea
sha256: 6a5090762c6058bc223e37e89f53832faad80995e3c5ed7e59ed9f5a5e604e47
sha512: a1d2de8abf7e56a2c29bfa38d0ae23584db2174ec8b14c6da3220e1c52ad52861714f8c363be843d16cdf13a22e0b74c16a1cb684ba102f132b09133338a169a
ssdeep: 1536:ZvWfZaeH+mnzEwE5RYghRvXFhoiZ9bd9JovrgmShtvM4CoLT6QPbBazkDLNf43:9Wf9+MzwCYdho2td0gmzkDLNf43
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: Final-02.exe.bin
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: Final-02.exe.bin

Ransom:MSIL/Filecoder.DZ!MTB also known as:

Elasticmalicious (high confidence)
ClamAVWin.Ransomware.Thanos-9755595-0
McAfeeRDN/Thanos
CylanceUnsafe
AegisLabTrojan.Win32.Generic.j!c
SangforMalware
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderGen:Variant.Barys.25686
K7GWTrojan ( 005732f31 )
K7AntiVirusTrojan ( 005732f31 )
ArcabitTrojan.Barys.D6456
SymantecRansom.Cryptolocker
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Ransom.Win32.Generic
AlibabaRansom:MSIL/Filecoder.274f3cbd
MicroWorld-eScanGen:Variant.Barys.25686
RisingTrojan.AntiVM!1.CF63 (CLASSIC)
Ad-AwareGen:Variant.Barys.25686
EmsisoftGen:Variant.Barys.25686 (B)
Comodo.UnclassifiedMalware@0
F-SecureTrojan.TR/Dropper.Gen2
DrWebTrojan.Siggen11.59996
TrendMicroRansom.MSIL.THANOS.SMYAAK-P
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.fe7dcc0f74e152a7
SophosMal/Generic-R + Mal/Hakbit-A
IkarusWin32.Outbreak
JiangminTrojan.MSIL.pvhy
AviraTR/Dropper.Gen2
MAXmalware (ai score=85)
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:MSIL/Filecoder.DZ!MTB
ZoneAlarmHEUR:Trojan-Ransom.Win32.Generic
GDataGen:Variant.Barys.25686
AhnLab-V3Malware/Win32.RL_Generic.C4192539
ALYacGen:Variant.Barys.25686
MalwarebytesTrojan.Crypt.MSIL.Generic
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/Agent.THY
TrendMicro-HouseCallRansom.MSIL.THANOS.SMYAAK-P
TencentWin32.Trojan.Generic.Egen
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetMSIL/Filecoder.FA9D!tr.ransom
BitDefenderThetaAI:Packer.0C318DE31F
AVGWin32:Trojan-gen
Cybereasonmalicious.f74e15
AvastWin32:Trojan-gen
Qihoo-360HEUR/QVM03.0.E828.Malware.Gen

How to remove Ransom:MSIL/Filecoder.DZ!MTB?

Ransom:MSIL/Filecoder.DZ!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment