Malware

Jacard.144791 information

Malware Removal

The Jacard.144791 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jacard.144791 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Uses Windows utilities to enumerate running processes
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality
  • Uses Windows utilities for basic functionality
  • Deletes executed files from disk
  • Uses suspicious command line tools or Windows utilities

How to determine Jacard.144791?


File Info:

name: 397274AA8167C58EF72F.mlw
path: /opt/CAPEv2/storage/binaries/201eda697f3c0a2bc732ee572240db5ee00e659f32ceab34d70f5adb56c37be6
crc32: 2A9BE0EC
md5: 397274aa8167c58ef72f28bc03351a43
sha1: bea78819e92c222e5a7e92d36d40176714d46d06
sha256: 201eda697f3c0a2bc732ee572240db5ee00e659f32ceab34d70f5adb56c37be6
sha512: 203f549f1f617be8261ae8d4189bba3fef359b3e2e1f00a28bf61b33a1d2ccd6c5931e58167956212d6169b4156b2a9f6493cbfa653f7170fff86316d2e60221
ssdeep: 3072:5wxVMhOC/dTDbq91+mno3t4QZQ3raVsNT+s+YNRXA5ZqpyTfbP:5TfFDbRnOTraya5YNRwCyLbP
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BA249E91BA46C67AD88107B0A81DCA539574EF3CA2C4620EB3D97A153AF335310EF94F
sha3_384: 5169d6d21d6eb3cd428b203f368176ba1ac979cb669f9ada54542b34349c29257860f3190bab62687e48ec4c897c8133
ep_bytes: e86f2b000050e8733601000000000090
timestamp: 2008-09-16 14:17:44

Version Info:

0: [No Data]

Jacard.144791 also known as:

MicroWorld-eScanGen:Variant.Jacard.144791
FireEyeGen:Variant.Jacard.144791
ALYacGen:Variant.Jacard.144791
CylanceUnsafe
ZillyaTrojan.Delf.Win32.111938
K7AntiVirusTrojan ( 005400141 )
K7GWTrojan ( 005400141 )
Cybereasonmalicious.a8167c
SymantecTrojan.Gen.MBT
Elasticmalicious (moderate confidence)
ESET-NOD32Win32/Delf.BGN
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Backdoor.Win32.Agent.gen
BitDefenderGen:Variant.Jacard.144791
NANO-AntivirusTrojan.Win32.Delf.jpjhmh
RisingTrojan.Delf!8.67 (CLOUD)
SophosMal/Generic-S
DrWebTrojan.MulDrop20.14893
VIPREGen:Variant.Jacard.144791
TrendMicroTROJ_GEN.R002C0PFL22
McAfee-GW-EditionRDN/Generic.dx
EmsisoftGen:Variant.Jacard.144791 (B)
GoogleDetected
AviraBDS/Agent.aqisr
Antiy-AVLTrojan/Generic.ASMalwS.F0
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Jacard.D23597
GDataGen:Variant.Jacard.144791
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win.Generic.C5196702
McAfeeRDN/Generic.dx
MAXmalware (ai score=84)
TrendMicro-HouseCallTROJ_GEN.R002C0PFL22
YandexTrojan.Delf!lFkrQRoInK8
IkarusTrojan.Win32.Delf
MaxSecureTrojan.Malware.184646140.susgen
FortinetW32/Delf.BGN!tr
BitDefenderThetaAI:Packer.34057D0F19
AVGWin32:Malware-gen

How to remove Jacard.144791?

Jacard.144791 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment