Ransom Trojan

Trojan-Ransom.Win32.Encoder.awa removal instruction

Malware Removal

The Trojan-Ransom.Win32.Encoder.awa is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Encoder.awa virus can do?

  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • Uses Windows utilities for basic functionality
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

How to determine Trojan-Ransom.Win32.Encoder.awa?


File Info:

crc32: A9EFE697
md5: 03167ff8c779ca4e6d4bd4a9deb334fa
name: 03167FF8C779CA4E6D4BD4A9DEB334FA.mlw
sha1: 639c0d7beef9438594ea50e1a6bee86141adddd7
sha256: 986033d6aa3265cf029d3e208716bebe48e206abf33e1f97131b8ef0b11957ba
sha512: f1a2369e219752918af74a7439b2bb6069e56ee5cc6ae9d550cac4baf809981ee5017fda96e6136c18da9a3bdf7f462812aa709e612524b163f73dc2a4852c58
ssdeep: 768:Tq72eBcwbWQBk3MApF4wJcVVkKp7nJ1Wbeiq3su3ziB9xy97WlyXd7/oKJRNHNaP:+cwbWR3YwJcfJ1mefp59ClA/o6RNHHo
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright of Microsoft
FileVersion: 1.0.0.0
CompanyName: Microsoft
ProductName: Microsoft Windows 10
ProductVersion: 1.0.0.0
FileDescription:
Translation: 0x0000 0x04b0

Trojan-Ransom.Win32.Encoder.awa also known as:

LionicTrojan.Win32.Encoder.4!c
CylanceUnsafe
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
SymantecML.Attribute.HighConfidence
KasperskyTrojan-Ransom.Win32.Encoder.awa
TencentWin32.Trojan.Encoder.Bnq
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaCO.34110.eq1@amjK2kki
McAfee-GW-EditionArtemis!Trojan
Antiy-AVLTrojan/Generic.ASMalwS.1476DFE
MicrosoftRansom:Win32/Genasom
TACHYONRansom/W32.Encoder.78218
McAfeeArtemis!03167FF8C779
VBA32TrojanRansom.Encoder
FortinetMalicious_Behavior.SB
Paloaltogeneric.ml

How to remove Trojan-Ransom.Win32.Encoder.awa?

Trojan-Ransom.Win32.Encoder.awa removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment