Malware

Jacard.44185 removal guide

Malware Removal

The Jacard.44185 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jacard.44185 virus can do?

  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Network activity detected but not expressed in API logs

How to determine Jacard.44185?


File Info:

name: 973459AEFB350A2BE7F9.mlw
path: /opt/CAPEv2/storage/binaries/844377a8037411ef8b1706173eb10e80cbe95cb6ab4b074db258b192b86e2e41
crc32: F86BAC9B
md5: 973459aefb350a2be7f9977e8c79aeb2
sha1: 8ff1b02d1caa7816d969cb070d290984a0c7cdbf
sha256: 844377a8037411ef8b1706173eb10e80cbe95cb6ab4b074db258b192b86e2e41
sha512: cc509f5147f5cddf111ec2256a7ef5d2336000f48a2c79791802ec8a46577e6d515aebd92e0d172f192633992a7dc83ec3d0cd89de927debeef75d91ca779381
ssdeep: 6144:0L/C2mTB+/3kRellH2zU6NlTFruJhe5ZloVclJtsa+6re+ehA:0L/Cd0vkkGzLNlRuJs5ZlASJa
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17A058D27F6914877D1730A7CAD5B5BB9982EFE103D289D4A2BE81C0C5E3D68179283D3
sha3_384: 3c3fd5e975bead1f4854ccf51b5d543f17bb980bf8869f90e9d20271de3de72391a961dfc762d645fe1788e9db641dd6
ep_bytes: 558bec83c4f4b870fb4300e8a054fcff
timestamp: 1992-06-19 22:22:17

Version Info:

CompanyName: Copperflow Solutions / Capella Systems Group, Inc.
FileDescription: Julian Calendar Deluxe v2.00 Freeware Edition
FileVersion: 2.0.0.0
InternalName: JULCAL
LegalCopyright: Copyright (c) 1998 Copperflow Solutions and Capella Systems Group, Inc.
LegalTrademarks:
OriginalFilename:
ProductName: Julian Calendar Deluxe v2.00 Freeware Edition
ProductVersion: 2.0.0.0
Comments: Thank you for using our software!
Translation: 0x0409 0x04e4

Jacard.44185 also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanGen:Variant.Jacard.44185
McAfeeArtemis!973459AEFB35
CylanceUnsafe
SangforRiskware.Win32.Wacapew.C
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
BitDefenderGen:Variant.Jacard.44185
NANO-AntivirusVirus.Win32.Virut-Gen.bwpxnc
AvastWin32:WrongInf-A [Susp]
Ad-AwareGen:Variant.Jacard.44185
SophosML/PE-A
ComodoMalware@#20vh8xq3bgn85
VIPREVirus.Win32.Sality.atbh (v)
McAfee-GW-EditionBehavesLike.Win32.Virus.cz
FireEyeGen:Variant.Jacard.44185
EmsisoftGen:Variant.Jacard.44185 (B)
SentinelOneStatic AI – Suspicious PE
GDataGen:Variant.Jacard.44185
MicrosoftPUA:Win32/Presenoker
ALYacGen:Variant.Jacard.44185
MAXmalware (ai score=84)
TrendMicro-HouseCallTROJ_GEN.R002H09FH21
AVGWin32:WrongInf-A [Susp]
Cybereasonmalicious.efb350
MaxSecureTrojan.Malware.119044948.susgen

How to remove Jacard.44185?

Jacard.44185 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment