Threat Database Ransomware Filecoder.BD Ransomware

Filecoder.BD Ransomware

By CagedTech in Ransomware

Threat Scorecard

Popularity Rank: 20,965
Threat Level: 100 % (High)
Infected Computers: 47
First Seen: March 28, 2022
Last Seen: January 18, 2026
OS(es) Affected: Windows

Analysis Report

General information

Family Name: Filecoder.BD Ransomware
Signature status: No Signature

Known Samples

MD5: 6355a8e939579225c7fd640f752611d9
SHA1: d82e966293c8811654878747fdac04045e8f8945
SHA256: F834291B8378F8B8619CC60AC7FB243422FF2E866BCB05D2D9F9E4504D6717B3
File Size: 527.87 KB, 527872 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have exports table
  • File doesn't have security information
  • File is .NET application
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Assembly Version 1.0.0.0
Comments Launcher chlebeek clickera
Company Name ITChlebeek
File Description ChlebeekLauncher
File Version 1.3.0.0
Internal Name ChlebeekLauncher.exe
Legal Copyright Copyright © 2022
Original Filename ChlebeekLauncher.exe
Product Name ChlebeekLauncher
Product Version 1.3.0.0

File Traits

  • .NET
  • HighEntropy
  • x86

Block Information

Total Blocks: 23
Potentially Malicious Blocks: 12
Whitelisted Blocks: 11
Unknown Blocks: 0

Visual Map

0 0 x x x x x x x x x x x x 0 0 0 0 0 0 0 0 0
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Filecoder.BD

Windows API Usage

Category API
User Data Access
  • GetComputerNameEx
  • GetUserDefaultLocaleName
  • GetUserObjectInformation
Encryption Used
  • BCryptOpenAlgorithmProvider
Anti Debug
  • IsDebuggerPresent
  • NtQuerySystemInformation

Related Posts

Trending

Most Viewed

Loading...