Ransom Trojan

Trojan-Ransom.Win32.Encoder.mwk (file analysis)

Malware Removal

The Trojan-Ransom.Win32.Encoder.mwk is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Encoder.mwk virus can do?

  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine Trojan-Ransom.Win32.Encoder.mwk?


File Info:

crc32: 71FFF822
md5: 4f542c1186fd1684de9e590bd62493b6
name: 4F542C1186FD1684DE9E590BD62493B6.mlw
sha1: d3361c0a112feff14584fb7f78ddddb052cb2192
sha256: 93081f5c708d414b6c4983a4d5d43089c2835fb32a8c6557f6cec238f65a9324
sha512: 45c45c126db3893168e1fb67d0af28bde481023c7eae8144867fcc02e452b284e25532ab6c3ad35d386ac09063886a38bf98877419e25287a3fe55f16c679907
ssdeep: 384:guStJgXtB+4PONKu/6b5jFen4Eic1IKqLdO2+nh/sdlBU1QUmaqUh2AUTe:gDs647u4F2Tic1Izk2UwlW1BmaqU2M
type: PE32+ executable (GUI) x86-64, for MS Windows

Version Info:

0: [No Data]

Trojan-Ransom.Win32.Encoder.mwk also known as:

CynetMalicious (score: 100)
CAT-QuickHealTrojanransom.Encoder
ALYacGen:Variant.Mikey.122820
CylanceUnsafe
SangforRansom.Win32.Encoder.ky
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaRansom:Win64/ContiCrypt.172d956b
K7GWTrojan ( 0057cbd51 )
Cybereasonmalicious.a112fe
CyrenW64/Kryptik.EGT.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win64/GenKryptik.FFNR
APEXMalicious
AvastFileRepMalware
KasperskyTrojan-Ransom.Win32.Encoder.mwk
BitDefenderGen:Variant.Mikey.122820
MicroWorld-eScanGen:Variant.Mikey.122820
Ad-AwareGen:Variant.Mikey.122820
SophosMal/Generic-S
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_ContiCrypt.R002C0DFF21
McAfee-GW-EditionBehavesLike.Win64.Generic.mc
FireEyeGeneric.mg.4f542c1186fd1684
EmsisoftGen:Variant.Mikey.122820 (B)
AviraTR/AD.ContiRansom.ahdyg
MicrosoftRansom:Win64/ContiCrypt.PG!MTB
AegisLabTrojan.Win32.Encoder.j!c
GDataGen:Variant.Mikey.122820
AhnLab-V3Ransomware/Win.Filecoder.C4478224
McAfeeArtemis!4F542C1186FD
MAXmalware (ai score=86)
MalwarebytesRansom.FileLocker
PandaTrj/CI.A
TrendMicro-HouseCallRansom_ContiCrypt.R002C0DFF21
IkarusTrojan.Win64.Krypt
FortinetW64/GenKryptik.FFNR!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Trojan-Ransom.Win32.Encoder.mwk?

Trojan-Ransom.Win32.Encoder.mwk removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment