Backdoor

Backdoor:Win32/Tiggre!rfn (file analysis)

Malware Removal

The Backdoor:Win32/Tiggre!rfn is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor:Win32/Tiggre!rfn virus can do?

  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Backdoor:Win32/Tiggre!rfn?


File Info:

crc32: 62B05082
md5: a6891df2e7ecb6e780fd7c9eebdea769
name: A6891DF2E7ECB6E780FD7C9EEBDEA769.mlw
sha1: 2ea8c33187f1fb8466a8cc08c0fdfbee433973b5
sha256: b39a49f6b4bde934c3c9a1ef38221c02cca8a10c2ed707d536b93947c771571f
sha512: a7f2e0ded081b564ddec0e9476768699a33505709a98b66d4829f801e76c010641c62ba139bab2a741d5ec539111c12fc2c42a0cb724c983244d1107601c8819
ssdeep: 6144:MUmWqI7amSLcmqgD7b17WMGUndpHUrCq+Rf:0W37dSLcv4kMGUnvmeRf
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Backdoor:Win32/Tiggre!rfn also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 005324731 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Heur.Ransom.ACCDFISA.2
CylanceUnsafe
ZillyaTrojan.Cryrar.Win32.91
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaRansom:Win32/Cryrar.c938fb95
K7GWTrojan ( 005324731 )
Cybereasonmalicious.2e7ecb
CyrenW32/Crowti.KSJG-8436
SymantecRansom.Wannacry
ESET-NOD32a variant of Win32/Filecoder.ACCDFISA.A
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Cryrar.gwt
BitDefenderGen:Heur.Ransom.ACCDFISA.2
NANO-AntivirusTrojan.Win32.Cryrar.evylph
MicroWorld-eScanGen:Heur.Ransom.ACCDFISA.2
TencentWin32.Trojan.Cryrar.Lmuj
Ad-AwareGen:Heur.Ransom.ACCDFISA.2
SophosMal/Generic-S + Troj/Ransom-EZP
ComodoMalware@#2drrhob77l73
BitDefenderThetaGen:NN.ZexaF.34790.qqW@aiwAsEe
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom.Win32.ACCDFISA.SMTH
McAfee-GW-EditionBehavesLike.Win32.Generic.dh
FireEyeGeneric.mg.a6891df2e7ecb6e7
EmsisoftGen:Heur.Ransom.ACCDFISA.2 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Cryrar.bi
WebrootW32.Trojan.Ransom
AviraHEUR/AGEN.1112622
MicrosoftBackdoor:Win32/Tiggre!rfn
ZoneAlarmTrojan-Ransom.Win32.Cryrar.gwt
GDataWin32.Trojan-Ransom.Accdfisa.A
AhnLab-V3Trojan/Win32.Cryrar.C2297985
McAfeeTrojan-FONN!A6891DF2E7EC
MAXmalware (ai score=100)
VBA32Trojan-Ransom.Cryrar
MalwarebytesMalware.AI.2919163905
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom.Win32.ACCDFISA.SMTH
RisingTrojan.Generic@ML.92 (RDML:JGVq8CuIjOl+5fCi9qcY/A)
IkarusTrojan-Ransom.Accdfisa
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Filecoder.AC!tr.ransom
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Generic.HgIASOUA

How to remove Backdoor:Win32/Tiggre!rfn?

Backdoor:Win32/Tiggre!rfn removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment