Malware

What is “Win32/Filecoder.NLX”?

Malware Removal

The Win32/Filecoder.NLX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Filecoder.NLX virus can do?

  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Filecoder.NLX?


File Info:

crc32: F548F1CB
md5: 6fbcbec6c52dae60ac34938c5594b300
name: 6FBCBEC6C52DAE60AC34938C5594B300.mlw
sha1: 373bccdd3c9050ecabf48aed8ef72ac1df3b5afb
sha256: a8aafd730685e525aedf0382ea8a2497359e5b5ffa98b90a6b7cefb7ab7856e9
sha512: 9e1cb3670a00db36ba6b76b7baae34287ec6512b2134d2cd65660fbc961ec4e145b8a5fb53514e89c5fe22d4fb49a6cbebff5d2d9ddb966b5adc32ddeed8f4e3
ssdeep: 12288:OCdOy3vVrKxR5CXbNjAOxK/j2n+4YG/6c1mFFja3mXgcjfJilgsUFc/DdtwjY5yw:OCdxte/80jYLT3U1jfH5c/5twEYILpd
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xc2xa91999-2015 Jonathan Bennett & AutoIt Team
ProductVersion: 3.3.14.2
FileVersion: 127.0.0.1
Comments: http://www.autoitscript.com/autoit3/
FileDescription: File Folder
Translation: 0x0409 0x04b0

Win32/Filecoder.NLX also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005106021 )
Elasticmalicious (high confidence)
DrWebTrojan.KillFiles.63887
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.32154229
CylanceUnsafe
SangforTrojan.Win32.Save.a
AlibabaRansom:Win32/CryFile.61f21a8a
K7GWTrojan ( 005106021 )
Cybereasonmalicious.6c52da
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/Filecoder.NLX
APEXMalicious
AvastFileRepMalware
KasperskyTrojan-Ransom.Win32.CryFile.zzp
BitDefenderTrojan.GenericKD.32154229
NANO-AntivirusTrojan.Win32.CryFile.fkexvc
MicroWorld-eScanTrojan.GenericKD.32154229
TencentWin32.Trojan.Raas.Auto
Ad-AwareTrojan.GenericKD.32154229
SophosMal/Generic-S
ComodoMalware@#2ta6zx6vo8p73
McAfee-GW-EditionBehavesLike.Win32.TrojanAitInject.dh
FireEyeGeneric.mg.6fbcbec6c52dae60
EmsisoftTrojan.GenericKD.32154229 (B)
WebrootTrojan.Win32.Swisyn
AviraHEUR/AGEN.1134135
eGambitUnsafe.AI_Score_52%
MicrosoftTrojan:Win32/Tiggre!rfn
ArcabitTrojan.Generic.D1EAA275
AegisLabTrojan.Win32.Generic.4!e
GDataTrojan.GenericKD.32154229
AhnLab-V3Malware/Win32.Generic.C2871971
Acronissuspicious
McAfeeArtemis!6FBCBEC6C52D
MAXmalware (ai score=85)
VBA32TrojanRansom.CryFile
PandaTrj/CI.A
IkarusTrojan-Ransom.GandCrab
MaxSecureTrojan.Malware.300983.susgen
FortinetAutoIt/Filecoder.NLX!tr.ransom
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Win32/Filecoder.NLX?

Win32/Filecoder.NLX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment