Ransom Trojan

How to remove “Trojan.Ransom.Jigsaw.A”?

Malware Removal

The Trojan.Ransom.Jigsaw.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Ransom.Jigsaw.A virus can do?

  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine Trojan.Ransom.Jigsaw.A?


File Info:

crc32: 8FC5FA15
md5: 11854e7f1d5c04f274d97e8f35ce3de9
name: 11854E7F1D5C04F274D97E8F35CE3DE9.mlw
sha1: eb214747eae077211cdabeb4305b20b67fd38da9
sha256: 20d1ed4596f9d0822cae1765bf22927cf72adf80326a53a207a1e21b30b489f2
sha512: 4a3bc3f464c1055a5031a729336ddb3d4b0cb81391b96c7c13a65dbb7efb04a24b7162af2a02387d62f9c25c61ba7d3bb7310c0528c6557f81f8cd59f55878b6
ssdeep: 6144:5UgDn7iOV7n1MDGXhAd705ZSlkTfMLJTOAZiYSXjjeqXus:22n7iOVb1PX+705ZUkTfMLJTOAZiYSX
type: PE32+ executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright 1999-2012 Firefox and Mozzilla developers. All rights reserved.
Assembly Version: 37.0.2.5583
InternalName: BitcoinBlackmailer.exe
FileVersion: 37.0.2.5583
CompanyName:
LegalTrademarks:
Comments:
ProductName: Firefox
ProductVersion: 37.0.2.5583
FileDescription: Firefox
OriginalFilename: BitcoinBlackmailer.exe

Trojan.Ransom.Jigsaw.A also known as:

Elasticmalicious (high confidence)
ClamAVWin.Ransomware.Jigsaw-6866216-0
CAT-QuickHealRansom.Jigsaw.B5
McAfeeRansom-Jigsaw!11854E7F1D5C
MalwarebytesRansom.FileCryptor
SangforTrojan.Win32.Save.a
BitDefenderTrojan.Ransom.Jigsaw.A
Cybereasonmalicious.f1d5c0
ArcabitTrojan.Ransom.Jigsaw.A
CyrenW64/Jigsaw.B
SymantecRansom.Jigsaw
APEXMalicious
AvastMSIL:Ransom-AX [Trj]
CynetMalicious (score: 85)
KasperskyHEUR:Trojan.Win32.Generic
SUPERAntiSpywareTrojan.Agent/Gen-Multi
MicroWorld-eScanTrojan.Ransom.Jigsaw.A
RisingRansom.Jigsaw!1.C168 (CLASSIC)
Ad-AwareTrojan.Ransom.Jigsaw.A
EmsisoftTrojan.Ransom.Jigsaw.A (B)
F-SecureHeuristic.HEUR/AGEN.1116474
VIPRETrojan.MSIL.Filecoder.b (v)
TrendMicroRansom.MSIL.JIGSAW.SMI
McAfee-GW-EditionBehavesLike.Win64.Generic.dc
FireEyeTrojan.Ransom.Jigsaw.A
SophosML/PE-A
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1116474
Antiy-AVLTrojan[Ransom]/Win32.Jigsaw.a
MicrosoftRansom:MSIL/JigsawLocker.A
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataMSIL.Trojan-Ransom.Jigsaw.F
AhnLab-V3Win-Trojan/JigsawLocker.Gen
ALYacTrojan.Ransom.Jigsaw.A
ESET-NOD32a variant of MSIL/Filecoder.Jigsaw.B
TrendMicro-HouseCallRansom.MSIL.JIGSAW.SMI
MAXmalware (ai score=80)
eGambitUnsafe.AI_Score_100%
FortinetMSIL/Filecoder.8296!tr.ransom
BitDefenderThetaGen:NN.ZexaF.34590.ruW@amCLemm
AVGMSIL:Ransom-AX [Trj]
CrowdStrikewin/malicious_confidence_90% (D)

How to remove Trojan.Ransom.Jigsaw.A?

Trojan.Ransom.Jigsaw.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment