Malware

How to remove “Jaik.127078”?

Malware Removal

The Jaik.127078 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jaik.127078 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Saami
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the RedLine malware family
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Jaik.127078?


File Info:

name: F773C555C397C47CDBC4.mlw
path: /opt/CAPEv2/storage/binaries/ae92e4e2b8b66559dcd9fc91e5d9315554947981fe1e5de6a19fd716d9e38387
crc32: 5EAA9DB2
md5: f773c555c397c47cdbc4730dfa6ecb3a
sha1: f62963c7258e5bbbe81373476834fdd92a04fce1
sha256: ae92e4e2b8b66559dcd9fc91e5d9315554947981fe1e5de6a19fd716d9e38387
sha512: c5457efd6bf6b075a44534d56dce91b8d17940ccb9f59a299378284fee074ad337e1ddfa2ddd84925677257632e0ea354c9c86c0d705558edc617e2658825b68
ssdeep: 6144:aAhXHoCqWETzqAxsLXO87as9bSBFzjhcyUttjmHaC0K:aAVHFqWETzqSsbO87pbI5CRmdn
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E454F14472F28432E6B34A301975D7F11B3BBD326E78E59E7250A72E6DB02C19A72353
sha3_384: 1dd72814a041e0e6957575c7fc44826b4b941136c57017d5b6692b21cd0999e99789b11fb1c1e04981dc518258ce23de
ep_bytes: e893470000e989feffff2da403000074
timestamp: 2021-09-10 20:34:15

Version Info:

CompanyName: Furious
FileDescription: WholeSheet
FileVersion: 25.71.48.45
InternalName: GorgerousVar.exe
LegalTrademarks1: Coordinator inc.
OriginalFilename: pskodkfgnosfd.exe
Translation: 0x4042 0x0564

Jaik.127078 also known as:

BkavW32.AIDetectNet.01
MicroWorld-eScanGen:Variant.Jaik.127078
FireEyeGeneric.mg.f773c555c397c47c
Cylanceunsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005690671 )
K7GWTrojan ( 005690671 )
CrowdStrikewin/malicious_confidence_100% (W)
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
APEXMalicious
KasperskyUDS:Backdoor.Win32.Mokes.gen
BitDefenderGen:Variant.Jaik.127078
TencentTrojan-Ransom.Win32.Stop.gen
SophosML/PE-A
BaiduWin32.Trojan.Kryptik.jm
McAfee-GW-EditionBehavesLike.Win32.Lockbit.dc
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Jaik.127078 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Jaik.127078
GoogleDetected
ZoneAlarmUDS:Backdoor.Win32.Mokes.gen
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
MAXmalware (ai score=80)
RisingTrojan.Generic@AI.100 (RDML:HyhVsavqB0x8AGn56sGd/A)
IkarusTrojan.Win32.Crypt
Cybereasonmalicious.7258e5

How to remove Jaik.127078?

Jaik.127078 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment