Skip to content
  • Active
  • Severity: High
  • Ransomware
  • Windows
  • Verified · Oct 2016

How to remove Jack.pot ransomware virus

A step-by-step removal guide for affected devices. Follow the verified procedure below — most readers complete it in under 10 minutes.

Olivia Morelli · Ransomware analyst

Jack.pot ransomware is yet another greedy virus

Jack.pot virus is a destructive Trojan horse that uses illegal techniques to blackmail the computer user. If a computer is not protected enough, Jack.pot ransomware infiltrates the system and encrypts all data with a undefeatable encryption algorithm. The virus is coded to detect and encrypt files that have a specific file extension, and once they get encrypted, no one can open them anymore. We must mention that the data encryption program appends .coin file extensions to every file it corrupts. This way, the victim can see which files have been affected and which ones were not. Then the virus replaces desktop wallpaper with a message that contains very little information. There is a jack.pot sign at the top of it, the traditional ransomware statement – “all your important files are encrypted,” and the requirement to pay a ransom in order to get the decryption tool. Apparently, the Jackpot ransomware asks for 3.0 BTC, which equals to 2064 USD. What is interesting is that the ransom note provides no more information. It does not command the victim to install Tor browser like other viruses do.

Although we have stated that it is impossible to decrypt files without a special decryption program, we recommend you to look at data recovery options explained below this article. Remember that before you try to decrypt or recover your files, you must remove Jack.pot virus first. If you are planning to try and remove this ransomware manually, we strongly recommend you not to do so. You can eliminate the wrong files and damage the computer system, so it is better to rely on a proper malware removal tool, for instance, FortectIntego. The virus might attempt to block your antivirus software, so in such case, follow Jack.pot removal instructions provided below.

Jack.pot virus displays such message on victim's computer screen

How did this virus infiltrate your computer?

Computer users typically install ransomware by themselves without realizing it. It happens because ransomware spreads as a Trojan horse – it can arrive in the form of a safe-looking document. Typically, attackers obfuscate a malicious script in a Word document, save it under, for example, “Invoice-JS720” name and then send it to victims. When the victim opens such document, sees a scrambled text and a line asking whether content should be enabled or not. If you have received such email, do not choose the “Enable content” or “enable macros” option, because this will only activate a malicious code that downloads the destructive payload to the system. However, ransomware can proliferate via malware-laden ads, exploit kits or other viruses. To protect your PC from malware attacks, shield it with powerful anti-malware software.

How to remove Jack.pot ransomware?

Jack.pot virus, just like other malicious viruses (Locky, Odin, Hucky and others) should be uninstalled professionally. Viruses are well-coded programs that can bury malicious components all over the computer system, and only professional IT experts can recognize and delete them. However, not all computer users know such people, so we recommend you to employ a powerful anti-malware software to remove Jack.pot ransomware. Anti-malware programs are coded by malware experts who know how to identify and delete malicious programs from the system, so please do not waste your precious time trying to uninstall this malicious virus manually. For Jack.pot removal, reboot your PC into a Safe Mode with Networking first. Read instructions provided below to learn how to do that.

Did this guide help?

4 comments

  1. loli

    oH NO! NOT RANSOMWARE! has anyone found a way to decrypt files

  2. help

    I need my files back, too! there must be a way to restore them....

  3. Vivienne

    sadly, there is no way to recover them. well, at least now.

  4. Jess

    Deleted the virus but could not decrypt .coin files tho

Spyware News
Privacy preferences

We use cookies to improve your experience and analyze traffic. Some cookies enable embedded content like videos and social posts. Choose what you allow — you can change this anytime.