Malware

Jacard.194709 information

Malware Removal

The Jacard.194709 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jacard.194709 virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Attempts to identify installed AV products by installation directory

How to determine Jacard.194709?


File Info:

name: 7D7C537671047C4DEFB1.mlw
path: /opt/CAPEv2/storage/binaries/5c665f4479e2ddd6931d614e619aa49d8b34bd2d5d3761abf75542b5eed08a30
crc32: 9535F0B6
md5: 7d7c537671047c4defb1de634d256c30
sha1: 7c3f3d5a3db1a717a5736e6aa95ef2b1a0bec0d7
sha256: 5c665f4479e2ddd6931d614e619aa49d8b34bd2d5d3761abf75542b5eed08a30
sha512: 49e9c5128c0cfaae602f5f43327d9e5fba3231f0a854f3dc397e18f859bb561ebc38200c3f23b0cb5697e0de94a2e5bdc6375f94696924d7342cd18af8e84968
ssdeep: 24576:tMxTXND5JcEQRC5ANaQRKsAFtdUESiTyoc3onh5BgSjTIYWb/WHxHpQtX/bwq5Yp:osC6aSA1yy5mSXkWReEq5YNTMgz7
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T190B55C17E64060BEC4AB0B3F2877AA549C3EBB513592AC675BF1084CCF35582267B64F
sha3_384: c3c457475fadf4c87e7d06d1b705cc85b50d683843fd67453f21ebf9a2ccbe431322481106352417383affa6a6dbf569
ep_bytes: 558bec83c4f0b8a0ca9c00e8206ae2ff
timestamp: 2019-05-27 02:37:40

Version Info:

0: [No Data]

Jacard.194709 also known as:

LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Jacard.194709
FireEyeGeneric.mg.7d7c537671047c4d
ALYacGen:Variant.Jacard.194709
CylanceUnsafe
ZillyaDownloader.Delf.Win32.57861
SangforTrojan.Win32.GenericKD.4
K7AntiVirusTrojan-Downloader ( 0054b5491 )
AlibabaTrojanBanker:Win32/Banbra.12f47316
K7GWTrojan-Downloader ( 0054b5491 )
CrowdStrikewin/malicious_confidence_100% (W)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/TrojanDownloader.Delf.CRQ
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan-Banker.Win32.Banbra.gen
BitDefenderGen:Variant.Jacard.194709
AvastWin32:Trojan-gen
TencentWin32.Trojan-banker.Banbra.Akfs
SophosMal/Generic-S
ComodoMalware@#3ksjxftse8olb
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.vh
EmsisoftGen:Variant.Jacard.194709 (B)
JiangminTrojan.Banker.Banbra.dgi
AviraHEUR/AGEN.1105237
Antiy-AVLTrojan[Banker]/Win32.Banbra
MicrosoftTrojan:Win32/Occamy.C5C
ViRobotTrojan.Win32.Z.Delf.2305536
ZoneAlarmHEUR:Trojan-Banker.Win32.Banbra.gen
GDataGen:Variant.Jacard.194709
CynetMalicious (score: 99)
AhnLab-V3Malware/Win32.Generic.C3260632
McAfeeArtemis!7D7C53767104
VBA32TScope.Trojan.Delf
MalwarebytesMalware.AI.1908164685
RisingDownloader.Delf!8.16F (CLOUD)
IkarusTrojan-Downloader.Win32.Delf
MaxSecureTrojan.Malware.11586831.susgen
FortinetW32/Delf.CRQ!tr.dldr
BitDefenderThetaAI:Packer.0A32528B17
AVGWin32:Trojan-gen
Cybereasonmalicious.671047
PandaTrj/GdSda.A

How to remove Jacard.194709?

Jacard.194709 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment