Ransom

What is “Generic.MSIL.Ransomware.Jigsaw.D2AB552D”?

Malware Removal

The Generic.MSIL.Ransomware.Jigsaw.D2AB552D is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.MSIL.Ransomware.Jigsaw.D2AB552D virus can do?

  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.MSIL.Ransomware.Jigsaw.D2AB552D?


File Info:

crc32: E33481CA
md5: 20cb919733c7063b57e7eef8f5d750a7
name: 20CB919733C7063B57E7EEF8F5D750A7.mlw
sha1: 99ac9ab523ec170f730f5edbb75a0fbacc3fb433
sha256: 65c6bb873969903b01452392803d883d2ebddceb48030aa26b771857472e9680
sha512: 4d8f3d8e005d548302f010022a6d7049ff0a3e854b53f54aa9382b5a71fe8919e4e730c347cc206a40efa64f7feda6c44f467b6674f57bfeaca4e76915f6a633
ssdeep: 768:PjC+Y6JP2YkGm9G/z/QntpZ51QO+GvGR1rUf2BZpVi6tdrpzvT6u:PG+Y0kl9Q7QtB1ivKYpVvt5n
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright 2018 Windows developers. All rights reserved.
Assembly Version: 1.2.0.0
InternalName: Maya.exe
FileVersion: 1.2.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: Processus hxf4te Windows
ProductVersion: 1.2.0.0
FileDescription: Processus hxf4te Windows
OriginalFilename: Maya.exe

Generic.MSIL.Ransomware.Jigsaw.D2AB552D also known as:

K7AntiVirusTrojan ( 700000121 )
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop7.42350
CAT-QuickHealPUA.GenericFC.S7082989
ALYacDeepScan:Generic.MSIL.Ransomware.Jigsaw.D2AB552D
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:MSIL/Jigsaw.feaf6a7c
K7GWTrojan ( 700000121 )
Cybereasonmalicious.733c70
SymantecRansom.Jigsaw
ESET-NOD32a variant of MSIL/PSW.CoinStealer.AH
AvastWin32:PWSX-gen [Trj]
ClamAVWin.Trojan.SatoshiBypass-6853426-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderDeepScan:Generic.MSIL.Ransomware.Jigsaw.D2AB552D
NANO-AntivirusTrojan.Win32.BitCoinMiner.euphhz
MicroWorld-eScanDeepScan:Generic.MSIL.Ransomware.Jigsaw.D2AB552D
TencentMalware.Win32.Gencirc.11491fa8
Ad-AwareDeepScan:Generic.MSIL.Ransomware.Jigsaw.D2AB552D
SophosML/PE-A + Troj/Jigsaw-K
ComodoMalware@#26kiko7w1w9g8
F-SecureHeuristic.HEUR/AGEN.1128535
BitDefenderThetaGen:NN.ZemsilF.34688.cm0@aSGwDgg
VIPRETrojan.Win32.Generic!BT
TrendMicroTrojanSpy.MSIL.COINSTEALER.SMLV
McAfee-GW-EditionGenericRXHN-ZE!20CB919733C7
FireEyeGeneric.mg.20cb919733c7063b
EmsisoftDeepScan:Generic.MSIL.Ransomware.Jigsaw.D2AB552D (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1128535
Antiy-AVLTrojan/Generic.ASMalwS.25FA0CA
MicrosoftRansom:MSIL/JigsawLocker!rfn
ArcabitDeepScan:Generic.MSIL.Ransomware.Jigsaw.D2AB552D
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataMSIL.Trojan.ClipBanker.C
McAfeeGenericRXHN-ZE!20CB919733C7
MAXmalware (ai score=100)
VBA32Trojan.MSIL.gen.11
MalwarebytesMalware.AI.623408831
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojanSpy.MSIL.COINSTEALER.SMLV
RisingRansom.JigsawLocker!8.52DD (C64:YzY0OtKqVC0KLOIk)
YandexTrojan.Agent!6Neahp735PQ
IkarusTrojan.MSIL.PSW
FortinetMSIL/Jigsaw.K!tr
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml

How to remove Generic.MSIL.Ransomware.Jigsaw.D2AB552D?

Generic.MSIL.Ransomware.Jigsaw.D2AB552D removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment