Ransom

Generic.MSIL.Ransomware.Jigsaw.878ECED1 malicious file

Malware Removal

The Generic.MSIL.Ransomware.Jigsaw.878ECED1 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.MSIL.Ransomware.Jigsaw.878ECED1 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself

How to determine Generic.MSIL.Ransomware.Jigsaw.878ECED1?


File Info:

crc32: 981AD870
md5: f61ce349b8ad6eb18985ebec9c611464
name: F61CE349B8AD6EB18985EBEC9C611464.mlw
sha1: 0e5759fc82292b3c9a0c57930bb7362858761e50
sha256: 4c46523f992e689e8e2af58cbed86f21786ed5dc0218ad846b892f1a6798e672
sha512: fb6f65ffd1f5b4da70e8fcf2bf144924c26d98a60d2d0d366191004e81389560e6012bd445c739fa2053fe4992ad0c1e3b6d922ef868fc9df471f7454ba6f449
ssdeep: 6144:gs4zaGKmS9C5SW6i0SpKw6aw8LffTIi9L6Wh3m0eIGh54p9caA9rVgx4Z2n290g:g5hKmapDGKw6aw8jfTO6m0eIGhyRA9r
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

InternalName: autoloadcc
FileVersion: 1.01.0002
CompanyName: DLS
ProductName: autoloadcc
ProductVersion: 1.01.0002
OriginalFilename: autoloadcc.exe
Translation: 0x0409 0x04b0

Generic.MSIL.Ransomware.Jigsaw.878ECED1 also known as:

K7AntiVirusTrojan ( 0053fc801 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGeneric.MSIL.Ransomware.Jigsaw.878ECED1
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 0053fc801 )
Cybereasonmalicious.9b8ad6
CyrenW32/MSIL_Troj.YS.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.MSIL.Ransomware.Jigsaw.878ECED1
NANO-AntivirusTrojan.Win32.Confuser.faqgzu
MicroWorld-eScanGeneric.MSIL.Ransomware.Jigsaw.878ECED1
TencentWin32.Trojan.Generic.Eawq
Ad-AwareGeneric.MSIL.Ransomware.Jigsaw.878ECED1
SophosMal/Generic-S
F-SecureHeuristic.HEUR/AGEN.1109336
BitDefenderThetaGen:NN.ZemsilF.34690.xm0@aCQa5aai
McAfee-GW-EditionBehavesLike.Win32.Generic.fc
FireEyeGeneric.mg.f61ce349b8ad6eb1
EmsisoftGeneric.MSIL.Ransomware.Jigsaw.878ECED1 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.cavml
AviraHEUR/AGEN.1109336
MicrosoftTrojan:Win32/Occamy.B
AegisLabTrojan.Win32.Generic.4!c
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGeneric.MSIL.Ransomware.Jigsaw.878ECED1
McAfeeArtemis!F61CE349B8AD
MAXmalware (ai score=97)
MalwarebytesMachineLearning/Anomalous.100%
PandaTrj/GdSda.A
RisingTrojan.Generic!8.C3 (CLOUD)
IkarusTrojan.MSIL.Confuser
FortinetMSIL/Agent.REDC!tr
AVGWin32:Malware-gen

How to remove Generic.MSIL.Ransomware.Jigsaw.878ECED1?

Generic.MSIL.Ransomware.Jigsaw.878ECED1 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment