Malware

Win32/Filecoder.NJF removal instruction

Malware Removal

The Win32/Filecoder.NJF is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Filecoder.NJF virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Exhibits possible ransomware file modification behavior
  • Writes a potential ransom message to disk
  • Network activity detected but not expressed in API logs
  • Appends a known encryptJJS ransomware file extension to files that have been encrypted
  • Anomalous binary characteristics

How to determine Win32/Filecoder.NJF?


File Info:

crc32: 7E25AA33
md5: d7d422d171c445067755e83a6a9fecea
name: D7D422D171C445067755E83A6A9FECEA.mlw
sha1: 75363920c17627826b7a103ad71d29dce0403dc9
sha256: 39f0fb24857990832977a01904076c89c8b6e91071094b6ffc5b77c99cb39010
sha512: 62052cfb7ed7ebd039cdf1053e227e7f6c99011d75134f9b805b0b8a9db009de8aac292ac6a705f91658c6e8cc4bfec229db5b4e8e25e9c251d4fbcfc168fe5d
ssdeep: 3072:W2ON8xTEL855aOBth5SETm5pcR/f8bmuWjwvVfL7TGtDTNBQr4j:nONKYL8qWLIEEcR38CTEF3GZgs
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Filecoder.NJF also known as:

BkavW32.AIDetect.malware2
K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
DrWebBackDoor.Poison.18546
CynetMalicious (score: 100)
ALYacTrojan.Ransom.N1N1N1
CylanceUnsafe
ZillyaTrojan.Scatter.Win32.123
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (W)
AlibabaRansom:Win32/Scatter.04ad4615
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.0c1762
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Filecoder.NJF
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Scatter.ap
NANO-AntivirusTrojan.Win32.Scatter.egkkmm
TencentWin32.Trojan.Scatter.Wtxc
SophosMal/Generic-S
ComodoMalware@#37ng4c8tb08o2
BitDefenderThetaGen:NN.ZexaF.34058.luW@aCnEoiei
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_DYNAMER.XXYQ
McAfee-GW-EditionGeneric.bcz
FireEyeGeneric.mg.d7d422d171c44506
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Scatter.t
WebrootW32.Trojan.GenKD
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Generic.ASMalwS.1A8A2FD
KingsoftWin32.Troj.GenericKD.v.(kcloud)
MicrosoftRansom:Win32/Genasom
TACHYONRansom/W32.Scatter.194560
McAfeeGeneric.bcz
MAXmalware (ai score=100)
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_DYNAMER.XXYQ
RisingTrojan.Generic@ML.100 (RDML:QLCNIBXo8p3gjMfijhgz9w)
YandexTrojan.Scatter!lcNz0fKrCxw
IkarusTrojan.Dropper
FortinetW32/Scatter.AP!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Generic.HwoC2aEA

How to remove Win32/Filecoder.NJF?

Win32/Filecoder.NJF removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment