Ransom

Generic.MSIL.Ransomware.Jigsaw.6F7D08DC removal guide

Malware Removal

The Generic.MSIL.Ransomware.Jigsaw.6F7D08DC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.MSIL.Ransomware.Jigsaw.6F7D08DC virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Exhibits possible ransomware file modification behavior
  • Writes a potential ransom message to disk
  • Network activity detected but not expressed in API logs

How to determine Generic.MSIL.Ransomware.Jigsaw.6F7D08DC?


File Info:

crc32: 94A45D2B
md5: ccc45f1e0f227c67d205b08b1d8aef2c
name: CCC45F1E0F227C67D205B08B1D8AEF2C.mlw
sha1: fff50d7cd5f386bd04585d11fcfe9e099b0c7dee
sha256: dce61e7916d23e2af8191e148a3d567d23ebce14d1c704ab8ebe8cd27729fcba
sha512: 7b9a8ce9d7adb8b13afa07745b8c7d8226e4b008cdc37d65d622dd3d1b076e1cd121618b3dc89a23eabdf45ba08e61c9e696fa0d73afae046859a2ee6457c4f4
ssdeep: 3072:7GMeKe8NyJ6puo78IjBuM+8DBZUYxYID6d:s6pXwIcitZVxYg
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright 1999-2012 Forefox and Mozzilla developers. All rights reserved.
Assembly Version: 37.0.2.5583
InternalName: JigsawRansomware.exe
FileVersion: 37.0.2.5583
CompanyName:
LegalTrademarks:
Comments:
ProductName: Forefox
ProductVersion: 37.0.2.5583
FileDescription: Forefox
OriginalFilename: JigsawRansomware.exe

Generic.MSIL.Ransomware.Jigsaw.6F7D08DC also known as:

LionicTrojan.MSIL.Crypren.4!c
DrWebTrojan.EncoderNET.2
ALYacTrojan.Ransom.Jigsaw
CylanceUnsafe
ZillyaTrojan.Crypren.Win32.745
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:MSIL/Crypren.3c949ba9
K7GWTrojan ( 0050e68c1 )
K7AntiVirusTrojan ( 0050e68c1 )
SymantecRansom.Jigsaw
ESET-NOD32a variant of MSIL/Filecoder.Jigsaw.I
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Ransom.MSIL.Crypren.gen
BitDefenderGeneric.MSIL.Ransomware.Jigsaw.6F7D08DC
MicroWorld-eScanGeneric.MSIL.Ransomware.Jigsaw.6F7D08DC
TencentWin32.Trojan.Raas.Auto
Ad-AwareGeneric.MSIL.Ransomware.Jigsaw.6F7D08DC
SophosMal/Generic-R + Mal/Genasom-A
ComodoMalware@#puvf0vmwafld
BitDefenderThetaGen:NN.ZemsilF.34170.hq0@a0xREIo
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom.MSIL.JIGSAW.SMIL
McAfee-GW-EditionArtemis
FireEyeGeneric.mg.ccc45f1e0f227c67
EmsisoftTrojan-Ransom.Jigsaw (A)
SentinelOneStatic AI – Malicious PE
AviraTR/Jigsaw.jtxjg
Antiy-AVLTrojan/Generic.ASMalwS.2989C46
MicrosoftRansom:MSIL/Cryptolocker.PDQ!MTB
GDataGeneric.MSIL.Ransomware.Jigsaw.6F7D08DC
McAfeeArtemis!CCC45F1E0F22
MAXmalware (ai score=100)
VBA32TScope.Trojan.MSIL
MalwarebytesRansom.Jigsaw
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom.MSIL.JIGSAW.SMIL
IkarusTrojan-Ransom.JigSaw
FortinetMSIL/Jigsaw.MBD8!tr.ransom
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Generic.MSIL.Ransomware.Jigsaw.6F7D08DC?

Generic.MSIL.Ransomware.Jigsaw.6F7D08DC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment