Malware

How to remove “Jacard.209897”?

Malware Removal

The Jacard.209897 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jacard.209897 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Attempts to connect to a dead IP:Port (10 unique times)
  • Reads data out of its own binary image
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Uses Windows utilities for basic functionality
  • Creates a hidden or system file
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

code.jquery.com
cdn.datatables.net
cdnjs.cloudflare.com
www.bing.com
crl3.digicert.com
ocsp.digicert.com
ocsp.comodoca.com
ocsp.usertrust.com

How to determine Jacard.209897?


File Info:

crc32: D8E2AD53
md5: c30c6ccea0b3c19a81b19714404ddad6
name: C30C6CCEA0B3C19A81B19714404DDAD6.mlw
sha1: c7412ce12bf62ee8ad643883d88ec387cb3d4798
sha256: 50279e500948e8df5cbcf63e9565af20d2974fbe94988c30738f1cc8e3a29203
sha512: 5b9d05005154cbc00765a5ace4b5ecd6085ef37b2d0becd61ae882e5338b95d8f8c6edfba99d79242c5c5d07686bbdda1dbd82e5125a99d81f45afd2fe3e1e03
ssdeep: 1536:SgVVu/LD5NHSR0OaUIhNSgw9/RzAEdVLTHdS8PdeSk0UW/ek9:zv6LDvHSR0O0hNSgwtRzAEdxT9fdeSu
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Jacard.209897 also known as:

ALYacGen:Variant.Jacard.209897
CylanceUnsafe
Cybereasonmalicious.ea0b3c
APEXMalicious
AvastFileRepMetagen [Malware]
BitDefenderGen:Variant.Jacard.209897
MicroWorld-eScanGen:Variant.Jacard.209897
Ad-AwareGen:Variant.Jacard.209897
BitDefenderThetaGen:NN.ZelphiF.34110.fGW@ay4IXUk
McAfee-GW-EditionBehavesLike.Win32.BadFile.nh
FireEyeGeneric.mg.c30c6ccea0b3c19a
EmsisoftGen:Variant.Jacard.209897 (B)
SentinelOneStatic AI – Suspicious PE
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Variant.Jacard.209897
AhnLab-V3Trojan/Win32.Sasfis.C11060
McAfeeArtemis!C30C6CCEA0B3
MAXmalware (ai score=81)
VBA32TScope.Trojan.Delf
RisingTrojan.Generic@ML.90 (RDML:Thpq9RX3BkDZMALmlFlU8g)
IkarusTrojan-Ransom.Gimemo
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/PossibleThreat
AVGFileRepMetagen [Malware]

How to remove Jacard.209897?

Jacard.209897 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment