Ransom Trojan

How to remove “Trojan-Ransom.Win32.Encoder.mzk”?

Malware Removal

The Trojan-Ransom.Win32.Encoder.mzk is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Encoder.mzk virus can do?

  • Reads data out of its own binary image
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Exhibits possible ransomware file modification behavior
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics
  • Clears web history

How to determine Trojan-Ransom.Win32.Encoder.mzk?


File Info:

crc32: 284BB0A8
md5: 63b4b045c54a393fbd67962613d144c8
name: 63B4B045C54A393FBD67962613D144C8.mlw
sha1: 3c5946eb989a9982babded692b7ef38646d64643
sha256: e9583b5f9b4b94754d289758fc676c6e364cb73ecbfe77e622a3e5cb685b4e9e
sha512: 1b7a7b89b43c7f0b29551bb7f88c009da825b257cf00fd040e1fa4729b99e0657a607d931db3b0032823948a3468368819c0938338ac1b42286856f5c7f3476b
ssdeep: 12288:ghkDgouVA2nxKkorvdRgQriDwOIxmxiZnYQE7PJcE4a73trLxw:oRmJkcoQricOIQxiZY1iaDtrLxw
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

CompiledScript: AutoIt v3 Script: 3, 3, 8, 1
FileVersion: 3, 3, 8, 1
FileDescription:
Translation: 0x0809 0x04b0

Trojan-Ransom.Win32.Encoder.mzk also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacTrojan.GenericKD.45241846
CylanceUnsafe
SangforTrojan.Win32.Wacatac.B
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Microcop.28e5ac07
K7GWTrojan ( 0055e3ef1 )
K7AntiVirusTrojan ( 0055e3ef1 )
CyrenW32/Autoit.XNSP-2917
ESET-NOD32multiple detections
APEXMalicious
AvastFileRepMalware
ClamAVWin.Ransomware.Locked-7053959-0
KasperskyTrojan-Ransom.Win32.Encoder.mzk
BitDefenderTrojan.GenericKD.45241846
ViRobotTrojan.Win32.S.Ransom.763893
MicroWorld-eScanTrojan.GenericKD.45241846
TencentWin32.Trojan.Filecoder.Wozs
Ad-AwareTrojan.GenericKD.45241846
SophosMal/Generic-S
BitDefenderThetaAI:Packer.920B065C17
TrendMicroRansom_Microcop.R002C0DFN21
McAfee-GW-EditionBehavesLike.Win32.Dropper.bh
FireEyeGeneric.mg.63b4b045c54a393f
EmsisoftTrojan.GenericKD.45241846 (B)
AviraDR/AutoIt.Gen
Antiy-AVLTrojan/Generic.ASCommon.168
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:Win32/Microcop!MSR
ArcabitTrojan.Generic.D2B255F6
AegisLabTrojan.Win32.Autoit.4!c
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataTrojan.GenericKD.45241846
AhnLab-V3Trojan/Win32.FileCoder.R291305
McAfeeArtemis!63B4B045C54A
MAXmalware (ai score=80)
VBA32Trojan.Autoit.F
MalwarebytesTrojan.Agent.AutoIt.Generic
TrendMicro-HouseCallRansom_Microcop.R002C0DFN21
RisingTrojan.Obfus/Autoit!1.BEDE (CLASSIC)
MaxSecureTrojan.Autoit.AZA
FortinetAutoIt/Filecoder.6114!tr.ransom
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Trojan-Ransom.Win32.Encoder.mzk?

Trojan-Ransom.Win32.Encoder.mzk removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment