Ransom

Ransom:Win32/Filecoder.PD!MTB information

Malware Removal

The Ransom:Win32/Filecoder.PD!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom:Win32/Filecoder.PD!MTB virus can do?

  • Steals private information from local Internet browsers
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Ransom:Win32/Filecoder.PD!MTB?


File Info:

crc32: 1DDA1588
md5: eec3730b2b99f6fb23134d79681f5122
name: EEC3730B2B99F6FB23134D79681F5122.mlw
sha1: 425209b891142704462baf14048d0dd59d0c7561
sha256: e4287e9708a73ce6a9b7a3e7c72462b01f7cc3c595d972cf2984185ac1a3a4a8
sha512: 420edeba0c699d8b04bf57300883a7e48e72a008484fe05453ef1b0edc14d8e97a1a15727f8de3e93ef16bf5472b91008a44a33ce0932ad4aeca21da8a90ffa0
ssdeep: 12288:2fClmGO4Ih+OeO+OeNhBBhhBB8TRWClfSlKmkzsDWhTsuqq:oClmppTRWChSlDkg6hrt
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Ransom:Win32/Filecoder.PD!MTB also known as:

BkavW32.AIDetectVM.malware1
MicroWorld-eScanGeneric.Ransom.Mespinoza.1363040B
FireEyeGeneric.mg.eec3730b2b99f6fb
CAT-QuickHealTrojan.Zudochka
McAfeeArtemis!EEC3730B2B99
CylanceUnsafe
K7AntiVirusTrojan ( 0055d5e81 )
BitDefenderGeneric.Ransom.Mespinoza.1363040B
K7GWTrojan ( 0055d5e81 )
Cybereasonmalicious.b2b99f
InvinceaMal/Generic-S
SymantecRansom.Gen
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan.Win32.Zudochka.gen
AlibabaRansom:Win32/generic.ali2000010
NANO-AntivirusTrojan.Win32.Zudochka.hvuhag
RisingRansom.Agent!1.C222 (CLASSIC)
Ad-AwareGeneric.Ransom.Mespinoza.1363040B
EmsisoftGeneric.Ransom.Mespinoza.1363040B (B)
ComodoMalware@#2molpnowwtb5a
DrWebTrojan.Encoder.32290
ZillyaTrojan.Filecoder.Win32.16463
TrendMicroRansom.Win32.MESPINOZA.SMDA
McAfee-GW-EditionBehavesLike.Win32.AdwareInstCap.hh
SophosMal/Generic-S
IkarusTrojan-Ransom.FileCrypter
GDataGeneric.Ransom.Mespinoza.1363040B
AviraTR/FileCoder.lsfus
Antiy-AVLTrojan/Win32.Zudochka
ArcabitGeneric.Ransom.Mespinoza.D14CC60B
ZoneAlarmHEUR:Trojan.Win32.Zudochka.gen
MicrosoftRansom:Win32/Filecoder.PD!MTB
CynetMalicious (score: 85)
AhnLab-V3Malware/Win32.Generic.C3650054
BitDefenderThetaGen:NN.ZexaF.34590.FCW@aqICSaii
ALYacTrojan.Ransom.Mespinoza
MAXmalware (ai score=100)
VBA32Trojan.Zudochka
MalwarebytesRansom.Mespinoza
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Filecoder.NYO
TrendMicro-HouseCallRansom.Win32.MESPINOZA.SMDA
TencentMalware.Win32.Gencirc.11afd219
YandexTrojan.GenAsa!qoUkCes1Sac
eGambitUnsafe.AI_Score_71%
FortinetW32/Filecoder.NYO!tr.ransom
AVGFileRepMalware
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Win32/Trojan.109

How to remove Ransom:Win32/Filecoder.PD!MTB?

Ransom:Win32/Filecoder.PD!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment