Malware

Jacard.30571 removal

Malware Removal

The Jacard.30571 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jacard.30571 virus can do?

  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Unconventionial language used in binary resources: Spanish (Modern)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Jacard.30571?


File Info:

name: C525F099CBD5477C9534.mlw
path: /opt/CAPEv2/storage/binaries/cca4f0cdda3190c629ce00d7fde0a342e8b34b1cce06427dcd03874bacc8b989
crc32: C4FE45A2
md5: c525f099cbd5477c95344d5589f1f4b9
sha1: 19d3151c8d42f2121201ca8a7001f01608f7cc08
sha256: cca4f0cdda3190c629ce00d7fde0a342e8b34b1cce06427dcd03874bacc8b989
sha512: f0739b4c7598f60999e9cae8a29f7eb5b54f3f3324975406fff9010047c3de7484d47a8a6bdabd9c56cfc410b874a00bb5dfcd74f5cb5a575003c94f872bacde
ssdeep: 12288:YMtGbXwyEinWtd4TPY67zpR3hhAVu/QDAGaRPcVzThMYQQ1Skslnv:YXXQqtL/AImdT6YQwslv
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T188354912BA499633D17F65788BD707F89866FC00BA188B4727F17E68AF7334039251A6
sha3_384: b306232bf392b12bb5f98e0c8b7a95ef9b778ef6af41c6475c4a2282dfa4c7f172bced2b312dc78ce1796eb59a334ee8
ep_bytes: 558bec83c4f4b8dce44900e87c8af6ff
timestamp: 1992-06-19 22:22:17

Version Info:

CompanyName: Caja de Valores
FileDescription: Calculadora
FileVersion: 1.0.1.1
InternalName:
LegalCopyright:
LegalTrademarks:
OriginalFilename:
ProductName:
ProductVersion: 1.0.0.0
Comments:
Translation: 0x0c0a 0x04e4

Jacard.30571 also known as:

LionicTrojan.Win32.Jacard.4!c
MicroWorld-eScanGen:Variant.Jacard.30571
FireEyeGen:Variant.Jacard.30571
ALYacGen:Variant.Jacard.30571
CylanceUnsafe
ZillyaBackdoor.SilentSpy.Win32.45
SangforTrojan.Win32.Occamy.C
Cybereasonmalicious.9cbd54
BitDefenderThetaAI:Packer.911FD56A18
TrendMicro-HouseCallTROJ_GEN.R002H09H521
Paloaltogeneric.ml
BitDefenderGen:Variant.Jacard.30571
TencentWin32.Backdoor.Silentspy.Swan
Ad-AwareGen:Variant.Jacard.30571
TACHYONBackdoor/W32.DP-SilentSpy.1134080
EmsisoftGen:Variant.Jacard.30571 (B)
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionArtemis
GDataGen:Variant.Jacard.30571
KingsoftWin32.Troj.GenericKD.v.(kcloud)
ArcabitTrojan.Jacard.D776B
MicrosoftTrojan:Win32/Occamy.CCC
McAfeeArtemis!C525F099CBD5
VBA32Backdoor.SilentSpy
YandexBackdoor.SilentSpy!kIS45Om6Tl0
eGambitGeneric.Malware
FortinetW32/SilentSpy.D!tr.bdr

How to remove Jacard.30571?

Jacard.30571 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment