Ransom

What is “Ransom:Win32/Filecoder.DH!MTB”?

Malware Removal

The Ransom:Win32/Filecoder.DH!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom:Win32/Filecoder.DH!MTB virus can do?

  • Anomalous binary characteristics

How to determine Ransom:Win32/Filecoder.DH!MTB?


File Info:

crc32: 7AB64256
md5: 7b158fc053ba69e18058118fea102821
name: 7B158FC053BA69E18058118FEA102821.mlw
sha1: 48d61beb58e532d4877186dd4f915bf8a059b046
sha256: 4129255a79456de19fc3001895ce31b8c21ee27e9dc36eca3408a18093e9e6bf
sha512: 6b1cf99d6df22589283c6c44b5805d26f1f200f98749eca782c432b3ac11bfacda26fd6bc5f7400c0c66ce4ad56c557740a1f62824628a68ef9a8b94ea549b55
ssdeep: 6144:zK1bBdbUdY7ng2yR0Ez1i7K0vBcpMf035rRP9bCRiCGGQ0mXL4qiCPJ4hKnXAON:zeCotByTVbCtp/mXEeJ4hKnXb2u6Ou6
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows, PECompact2 compressed

Version Info:

0: [No Data]

Ransom:Win32/Filecoder.DH!MTB also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053f4091 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacTrojan.Ransom.Filecoder
CylanceUnsafe
ZillyaTrojan.Encoder.Win32.390
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojan:Win32/Filecoder.270098fe
K7GWTrojan ( 0053f4091 )
Cybereasonmalicious.053ba6
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.NZY
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Encoder.aew
BitDefenderGen:Variant.Ransom.DBger.1
NANO-AntivirusTrojan.Win32.Encoder.fjkftq
ViRobotTrojan.Win32.S.Agent.579072.T
MicroWorld-eScanGen:Variant.Ransom.DBger.1
TencentWin32.Trojan.Raas.Auto
Ad-AwareGen:Variant.Ransom.DBger.1
SophosMal/Generic-S
ComodoMalware@#bxt6qpegmuc7
BitDefenderThetaGen:NN.ZexaF.34678.JqW@a0DXU6bi
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.hh
FireEyeGeneric.mg.7b158fc053ba69e1
EmsisoftGen:Variant.Ransom.DBger.1 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Encoder.dc
AviraHEUR/AGEN.1129606
eGambitUnsafe.AI_Score_76%
MicrosoftRansom:Win32/Filecoder.DH!MTB
ArcabitTrojan.Ransom.DBger.1
ZoneAlarmTrojan-Ransom.Win32.Encoder.aew
GDataGen:Variant.Ransom.DBger.1
AhnLab-V3Trojan/Win32.RansomCrypt.C4230146
Acronissuspicious
McAfeeGeneric.dzi
MAXmalware (ai score=100)
VBA32suspected of Trojan.Downloader.gen
PandaTrj/GdSda.A
RisingRansom.Encoder!8.FFD4 (CLOUD)
IkarusTrojan-Ransom.FileCrypter
FortinetW32/Filecoder.NST!tr.ransom
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Encoder.HgIASOoA

How to remove Ransom:Win32/Filecoder.DH!MTB?

Ransom:Win32/Filecoder.DH!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment