Bird_banner_small4
Trojan.MSIL.HiddenTearEnjey.A
TSL ID TSL20170315-03
Severity Moderate
Description

Trojan.MSIL.HiddenTearEnjey.A is a ransomware Trojan that targets the Windows platform. The malware contacts a remote server to retrieve the encryption key and send system information. The malware encrypts files on the infected system. It leaves the ransom note on the infected machine, with instructions to follow in order to get the files decrypted.

Affected Products
  • Microsoft Windows All Versions
File Hashes
MD5:
  • 0B4CC40299DF1E43519BA48F99C61596
SHA1:
  • 15606360ED8AD458656A249AFC68E9514D0882CF
Identifiers
Kaspersky
  • TROJAN-DROPPER.WIN32.DYCLER.YQB
Microsoft Malware Protection Center
TrendMicro
AegisLab
  • MSIL.TROJ.RANSOM!C
AhnLab
  • TROJAN/WIN32.FILECRYPTOR.C1856711
AVG
  • ATROS5.NTB
Avira
  • TR/FILECODER.PASDD
CAT-QuickHeal
  • TROJANDROPPER.DYCLER
Cyren
  • W32/TROJAN.DUBO-6519
DrWeb
  • TROJAN.ENCODER.10423
ESET
  • MSIL/FILECODER.AK
Fortinet
  • MSIL/FILECODER.AK!TR
GData
  • MSIL.TROJAN-RANSOM.REMIND.B
Malwarebytes
  • RANSOM.ENJEY
NANO-Antivirus
  • TROJAN.WIN32.DYCLER.EMFEMB
Qihoo-360
  • WIN32/TROJAN.DROPPER.2C5
Rising
  • RANSOM.FILECRYPTOR!8.1A7
Tencent
  • WIN32.TROJAN-DROPPER.DYCLER.FSE
Yandex
  • TROJAN.DR.DYCLER!OQB97VN6/PK
References https://www.bleepingcomputer.com/news/security/embittered-enjey-ransomware-developer-launches-ddos-attack-on-id-ransomware/
Related Threats