Ransom Trojan

Trojan-Ransom.Win32.Encoder.mcx information

Malware Removal

The Trojan-Ransom.Win32.Encoder.mcx is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Encoder.mcx virus can do?

  • A process attempted to delay the analysis task.
  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Uses Windows utilities for basic functionality
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Uses suspicious command line tools or Windows utilities

How to determine Trojan-Ransom.Win32.Encoder.mcx?


File Info:

crc32: 30233C58
md5: 89c2b3c83b9e09359627506b27280ff8
name: 89C2B3C83B9E09359627506B27280FF8.mlw
sha1: 324ea5d09a70ef50b76acffe872b261ed15bfaff
sha256: 1ec10a6a26f9684e17c1a9a9f33d18e10c12cc7f2b444898e1d6cd600110599a
sha512: d69d02c34751ecb980f4c66a7fb96337e6e38b7a1c9ab58b5fbee17ace2dc55f55cd4c986ab201b80103e29d4bdfc3b533ac5fd049aa1373867a1579a7f6a040
ssdeep: 1536:BpfEKNCj6VoJl9Go5K7s4Nu3qhsP+Rnouy8f:BVZ/VGS7rN+qHoutf
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

InternalName: Launcher
FileVersion: 5.2.11.0
CompanyName: EDS Software LLC
Comments: No:)
ProductName: Launcher Module
ProductVersion: 5.2.11.0
FileDescription: Launcher Application (for Windows)
OriginalFilename: Launch.exe
Translation: 0x0000 0x04e4

Trojan-Ransom.Win32.Encoder.mcx also known as:

BkavW32.AIDetect.malware1
CynetMalicious (score: 100)
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (W)
K7GWTrojan ( 0051918e1 )
K7AntiVirusTrojan ( 0051918e1 )
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastFileRepMalware
KasperskyTrojan-Ransom.Win32.Encoder.mcx
McAfee-GW-EditionBehavesLike.Win32.Dropper.nh
FireEyeGeneric.mg.89c2b3c83b9e0935
JiangminTrojan.PowerShell.bj
eGambitUnsafe.AI_Score_76%
MicrosoftProgram:Win32/Wacapew.C!ml
AegisLabTrojan.Win32.Encoder.j!c
McAfeeArtemis!89C2B3C83B9E
RisingRansom.Encoder!8.FFD4 (CLOUD)
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Trojan-Ransom.Win32.Encoder.mcx?

Trojan-Ransom.Win32.Encoder.mcx removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment