Malware
BTCWare
According to PCRisk, BTCWare is an updated version of a ransomware-type virus called Crptxxx.
BTCWare is a Windows malware family.
Background
PCRisk describes BTCWare as an updated build of a ransomware-type virus named Crptxxx. It spreads through a malicious application called "Rogers Hi-Speed Internet". After taking hold, BTCWare encrypts files and tacks the ".btcware" extension onto their names. Later variants instead append extensions such as .shadow, .payday, .wyvern, .nuclear, .aleta, .gryphon, .nopasaran, .blocking, .xfile, .master, .onyon, .theva, .cryptobyte, or .cryptowin to encrypted files. BTCWare then drops an HTM file ("#HOW_TO_FIX!.hta.htm") onto the desktop, while other variants store their ransom message in a !#RESTORE_FILES#!.inf file.
Source: Malpedia (Fraunhofer FKIE).