Trojan

Trojan.Downloader.JQLI information

Malware Removal

The Trojan.Downloader.JQLI is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Downloader.JQLI virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan.Downloader.JQLI?


File Info:

name: B2B364F7CDBBFB5088B9.mlw
path: /opt/CAPEv2/storage/binaries/8340c8084ae1ddd080ebf91e274b8faa68c68e54df0d8a036ffefaa0c2ae68bd
crc32: 26A8E32F
md5: b2b364f7cdbbfb5088b91b2d259bef03
sha1: ac56e25124f26a7f68a09f8cb1a0cec8f89017a9
sha256: 8340c8084ae1ddd080ebf91e274b8faa68c68e54df0d8a036ffefaa0c2ae68bd
sha512: c80173d9f5f892cbf3543c6c734de004e3eab4ae58362049f477a48badb381530343be5a84c55488294b6d3e4905ad1b9cf6a462ff9157e5cf492b71586eb40a
ssdeep: 192:kkXKt7bnGFPpHuBp3RGKTxW8YMcvdQgkyAd+6zrPf51JHyqOl1aWNaNVkoW4I0f4:kkYdvGD8hcv7kyAPzJSjlY7Vkd45k40
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T170B2DBFAEBC70EB5D22786F694F792B35421B06DDD120E8D85E237340C23782586DD9A
sha3_384: de8cd4383c8dc3d8103bb391941404e7de1dda6b78d9da933ffaaa731fd49d840212c90c0aebd2e189896cc812cfbf4f
ep_bytes: e8cbfdffffe97f01000033c0c3558bec
timestamp: 2005-10-12 07:53:35

Version Info:

0: [No Data]

Trojan.Downloader.JQLI also known as:

BkavW32.FamVT.GeND.Trojan
LionicTrojan.Win32.Generic.lX56
MicroWorld-eScanTrojan.Downloader.JQLI
ClamAVWin.Downloader.Upatre-5744094-0
FireEyeTrojan.Downloader.JQLI
CAT-QuickHealTrojanDownloader.Upatre.A4
McAfeeDownloader-FSH
Cylanceunsafe
ZillyaTrojan.Bublik.Win32.13395
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaMalware:Win32/km_2434c.None
K7GWTrojan-Downloader ( 0048f6391 )
K7AntiVirusTrojan-Downloader ( 0040f7f11 )
VirITTrojan.Win32.Zbot.GDD
CyrenW32/Trojan.LLKN-5319
SymantecDownloader.Upatre
Elasticmalicious (high confidence)
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Bublik.cfct
BitDefenderTrojan.Downloader.JQLI
AvastWin32:Agent-AUID [Trj]
TencentTrojan.Win32.Bublik.ha
TACHYONTrojan/W32.Bublik.25402.D
EmsisoftTrojan.Downloader.JQLI (B)
BaiduWin32.Trojan-Downloader.Waski.a
F-SecureTrojan.TR/Rogue.AI.14361
DrWebTrojan.DownLoader9.41241
VIPRETrojan.Downloader.JQLI
TrendMicroTROJ_UPATRE.SM37
McAfee-GW-EditionBehavesLike.Win32.Downloader.mm
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.11JPSXT
JiangminTrojan/Bublik.gss
AviraTR/Rogue.AI.14361
Antiy-AVLTrojan/Win32.Bublik
XcitiumTrojWare.Win32.Upatre.O@58re0o
ArcabitTrojan.Downloader.JQLI
SUPERAntiSpywareTrojan.Agent/Gen-Upatre
ZoneAlarmTrojan.Win32.Bublik.cfct
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3Trojan/Win32.Agent.R100612
ALYacTrojan.Downloader.JQLI
MAXmalware (ai score=88)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_UPATRE.SM37
RisingDownloader.Waski!1.A489 (CLASSIC)
YandexTrojan.Bublik!NyFZeIRGXo4
IkarusTrojan-Downloader.Win32.Upatre
MaxSecureTrojan.Upatre.Gen
FortinetW32/Agent.BAVS!tr
AVGWin32:Agent-AUID [Trj]
Cybereasonmalicious.7cdbbf
DeepInstinctMALICIOUS

How to remove Trojan.Downloader.JQLI?

Trojan.Downloader.JQLI removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment