Ransom Trojan

Trojan-Ransom.Win32.Encoder.bc malicious file

Malware Removal

The Trojan-Ransom.Win32.Encoder.bc is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Encoder.bc virus can do?

  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Uses Windows utilities for basic functionality
  • Exhibits possible ransomware file modification behavior
  • Network activity detected but not expressed in API logs

How to determine Trojan-Ransom.Win32.Encoder.bc?


File Info:

crc32: D9CA4596
md5: f78a1790f715fee47574939053075d10
name: F78A1790F715FEE47574939053075D10.mlw
sha1: 7c13c8c8e0ac986164fcdf922620cecc20d8dfbb
sha256: 31537cfe978a60311124dbf76a28e73e37c30ead937ea987d9a00464df8ddd2e
sha512: ede6058cc64118b380fdf70284289dc427e4c1d4ce09782518d9bc56d2fca953e08cce27801d2bcfa82444424cfdf14fbb0e9ef9916d287c43db9fd7ca7398ae
ssdeep: 6144:HSxqeRvX/dnTSLnhVpgHIasHcFqEAwzWPYSc7LT8VFna9pX5:ykeJXFnTSLnhD4scFqEAwz4s0Fa9v
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyright (c) 1999-2016 Igor Pavlov
InternalName: 7zS.sfx
FileVersion: 16.04
CompanyName: Igor Pavlov
ProductName: 7-Zip
ProductVersion: 16.04
FileDescription: 7z Setup SFX
OriginalFilename: 7zS.sfx.exe
Translation: 0x0409 0x04b0

Trojan-Ransom.Win32.Encoder.bc also known as:

BkavW32.AIDetect.malware1
K7AntiVirusRiskware ( 0040eff71 )
CylanceUnsafe
AlibabaRansom:Win32/Encoder.56b2f44a
K7GWRiskware ( 0040eff71 )
CyrenW32/Agent.BQV.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastFileRepMalware
KasperskyTrojan-Ransom.Win32.Encoder.bc
TencentWin32.Trojan.Encoder.Edxi
SophosMal/Generic-S
ComodoMalware@#ebvaci0hpges
BitDefenderThetaGen:NN.ZexaF.34142.vmNfaWduHPbi
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_Encoder.R002C0OF921
McAfee-GW-EditionBehavesLike.Win32.BadFile.fh
FireEyeGeneric.mg.f78a1790f715fee4
SentinelOneStatic AI – Suspicious PE
Antiy-AVLTrojan/Generic.ASMalwS.2C076F0
MicrosoftTrojan:Win32/Occamy.C31
TACHYONRansom/W32.Encoder.394758
McAfeeArtemis!F78A1790F715
VBA32TrojanRansom.Encoder
TrendMicro-HouseCallRansom_Encoder.R002C0OF921
YandexTrojan.Encoder!bn+8mFv1qSA
IkarusTrojan.Encoder
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Encoder.BC!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Trojan-Ransom.Win32.Encoder.bc?

Trojan-Ransom.Win32.Encoder.bc removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment