Malware

PWS:Win32/Tiggre!rfn removal instruction

Malware Removal

The PWS:Win32/Tiggre!rfn is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PWS:Win32/Tiggre!rfn virus can do?

  • Network activity detected but not expressed in API logs

How to determine PWS:Win32/Tiggre!rfn?


File Info:

crc32: 78B86BFC
md5: f967be1f9be822368986af0d551ace50
name: F967BE1F9BE822368986AF0D551ACE50.mlw
sha1: a912310a89971cf2d11990ef510157dabda0f4a1
sha256: cee74ba8b8014e4fd1fa5845d36ac72d5910a37dacbe3d19f7a156b648d99024
sha512: da1a2083ff77d102b97feb1eaa0534dde13f16f9b17badc8e5f4cd697c1ea7e2529dd3cf5078c7ce6c9d09618017b6eaed35b0020d2464cb37184bcf07763c96
ssdeep: 3072:8IBLEz2JwuppppppkBl9vTaSapJRmlRbGuGRTK+UMMwLcLtdDebKL/vTzYEt:zbeBvTaSacY3RLc5sWHzd
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
Assembly Version: 6.2.9200.16384
InternalName: WUDFHost.exe
FileVersion: 6.2.9200.16384
CompanyName: Microsoft Corporation
ProductName: Microsoftxae Windowsxae Operating System
ProductVersion: 6.2.9200.16384
FileDescription: Windows Driver Foundation -Processus Hxf4te de l'infrastructure de pilotes en mode utilisateur
OriginalFilename: WUDFHost.exe

PWS:Win32/Tiggre!rfn also known as:

K7AntiVirusSpyware ( 0055e3ec1 )
Elasticmalicious (high confidence)
DrWebTrojan.Siggen5.29619
CynetMalicious (score: 99)
ALYacGen:Variant.Razy.646348
CylanceUnsafe
ZillyaTrojan.Agent.Win32.706342
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaRansom:Win32/Blocker.b5542b19
K7GWSpyware ( 0055e3ec1 )
Cybereasonmalicious.f9be82
ESET-NOD32MSIL/Spy.Agent.ABI
APEXMalicious
AvastWin32:Trojan-gen
KasperskyTrojan-Ransom.Win32.Blocker.cdzo
BitDefenderGen:Variant.Razy.646348
NANO-AntivirusTrojan.Win32.Blocker.faqdes
MicroWorld-eScanGen:Variant.Razy.646348
TencentMalware.Win32.Gencirc.114b36fc
Ad-AwareGen:Variant.Razy.646348
ComodoMalware@#1ha2flw3am6t2
BitDefenderThetaGen:NN.ZemsilF.34126.mm1@a0@o7Jci
VIPRETrojan.Win32.Generic!BT
FireEyeGeneric.mg.f967be1f9be82236
EmsisoftGen:Variant.Razy.646348 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Blocker.qnh
AviraTR/Dropper.Gen
eGambitGeneric.Malware
Antiy-AVLTrojan/Generic.ASMalwS.1F99F3
KingsoftWin32.PSWTroj.Agent.q.(kcloud)
MicrosoftPWS:Win32/Tiggre!rfn
GDataGen:Variant.Razy.646348
AhnLab-V3Trojan/Win32.Blocker.R77445
McAfeeGenericRXKG-QO!F967BE1F9BE8
MAXmalware (ai score=100)
VBA32TrojanPSW.MSIL.Agent
PandaTrj/CI.A
YandexTrojan.Blocker!5qu6OAoyKXY
IkarusTrojan-PWS.MSIL
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.ADE!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove PWS:Win32/Tiggre!rfn?

PWS:Win32/Tiggre!rfn removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment