Malware

Jacard.209716 (file analysis)

Malware Removal

The Jacard.209716 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jacard.209716 virus can do?

  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Unconventionial language used in binary resources: Russian
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Jacard.209716?


File Info:

crc32: E3FD5603
md5: 57680fd6b7b35296a57cc0a9c6635b7e
name: 57680FD6B7B35296A57CC0A9C6635B7E.mlw
sha1: 572a8fb67c59caaf1c833de2891a299835f69e5d
sha256: f39b065347c97612eb711a3b8f4427e7d8265ba794a955b4f6a2b9ed69b54aec
sha512: 7cc10d9ab63a6a0b727709c9be6e3e75695910f09388e38afa5f88664442ceb8fc49d73fe663bffdf8694f80c485270e66361ad6324973596736661dd58a2775
ssdeep: 12288:nZYoXRzwHpLw6Q9srTYOpluRT5eN2JwgzmfRpTx3x0aRtlAUXFDuiNwMNKL5Qewd:Z3X6W2rTPcJ0RxyUXAq30c
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2000-2009 Heaventools Software
InternalName: Document
FileVersion: 1.92.0.98
CompanyName: Document Software
LegalTrademarks: Document is a trademark of Heaventools Software
Comments:
ProductName: Documentlorer
ProductVersion: 1.92.0.98
FileDescription: Document
OriginalFilename: Document
Translation: 0x0000 0x04e3

Jacard.209716 also known as:

MicroWorld-eScanGen:Variant.Jacard.209716
FireEyeGen:Variant.Jacard.209716
CylanceUnsafe
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Jacard.209716
K7GWRiskware ( 0040eff71 )
CyrenW32/Ransom.OO.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
KasperskyHEUR:Trojan-Ransom.Win32.Blocker.gen
Ad-AwareGen:Variant.Jacard.209716
EmsisoftGen:Variant.Jacard.209716 (B)
McAfee-GW-EditionFareit-FZO!57680FD6B7B3
eGambitPE.Heur.InvalidSig
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Jacard.D33334
ZoneAlarmHEUR:Trojan-Ransom.Win32.Blocker.gen
GDataGen:Variant.Jacard.209716
CynetMalicious (score: 100)
McAfeeFareit-FZO!57680FD6B7B3
MAXmalware (ai score=83)
PandaTrj/GdSda.A
ESET-NOD32Win32/TrojanDownloader.Delf.DCT
FortinetW32/GenKryptik.DPIE!tr
AVGWin32:Malware-gen
AvastWin32:Malware-gen

How to remove Jacard.209716?

Jacard.209716 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment