Malware

Jaik.127447 removal guide

Malware Removal

The Jaik.127447 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jaik.127447 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the EnigmaStub malware family
  • Harvests cookies for information gathering
  • Anomalous binary characteristics
  • Binary compilation timestomping detected
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Jaik.127447?


File Info:

name: 3214D3E0AB036B7F530E.mlw
path: /opt/CAPEv2/storage/binaries/15b379e5480eccf4dca8d9602441c8db906a36bc8ebad0ef36d7097f99fad9e8
crc32: 327A90F4
md5: 3214d3e0ab036b7f530eb5967963c1d3
sha1: 0d4c3b1b872773eb7726084ebbff073ee720788f
sha256: 15b379e5480eccf4dca8d9602441c8db906a36bc8ebad0ef36d7097f99fad9e8
sha512: f7e8aa3a77ec9f6bcd09a8ac5a0d7ebb95a3bc355e84be3e40959ae34dfd881036de949130ec890f2939365f81869b9fef88832a79091f310b2c0d3b9140ceed
ssdeep: 24576:fDNp6/yVhdKVWS4GbnWAEob5M3U35fAcN/v8Ubh+8Vm9DA+6atXx1PkY:fDNs/UhdeWS4PpkKcRf+79x1Pr
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14F55339104A207A6DC23BD37795EEECF4C9F7A8C29D05A75D6EFA99014CB3446A0C933
sha3_384: 1b089558d2341154455ca068bbba602ef6e661f521cfb7648acca98f5e98d1be082565da3977b6c4d5618f0bb19619a9
ep_bytes: eb0800de04000000000060e800000000
timestamp: 2100-07-03 07:04:45

Version Info:

Translation: 0x0000 0x04b0
Comments: 44 CALIBER
CompanyName: 44 CALIBER
FileDescription: 44 CALIBER
FileVersion: 1.6.2.0
InternalName: Insidious.exe
LegalCopyright: FuckTheSystem Copyright © 2021
LegalTrademarks:
OriginalFilename: Insidious.exe
ProductName: 44 CALIBER
ProductVersion: 1.6.2.0
Assembly Version: 1.6.2.0

Jaik.127447 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Jaik.4!c
AVGWin32:Evo-gen [Trj]
MicroWorld-eScanGen:Variant.Jaik.127447
FireEyeGeneric.mg.3214d3e0ab036b7f
ALYacGen:Variant.Jaik.127447
MalwarebytesTrojan.Crypt
VIPREGen:Variant.Jaik.127447
SangforSuspicious.Win32.Save.ins
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanPSW:Win32/Stealer.8da2ca34
BitDefenderThetaGen:NN.ZexaF.36250.pz0@ayWIIOc
CyrenW32/Trojan.FFG.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Packed.EnigmaProtector.M suspicious
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Enigma-9973746-0
KasperskyTrojan-PSW.Win32.Stealer.bmek
BitDefenderGen:Variant.Jaik.127447
AvastWin32:Evo-gen [Trj]
EmsisoftGen:Variant.Jaik.127447 (B)
F-SecureHeuristic.HEUR/AGEN.1306485
TrendMicroTROJ_GEN.R002C0DF923
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
Trapminemalicious.high.ml.score
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.1L0J4MO
AviraHEUR/AGEN.1306485
MAXmalware (ai score=83)
Antiy-AVLTrojan[Packed]/Win32.EnigmaProtector
ArcabitTrojan.Jaik.D1F1D7
ViRobotTrojan.Win.Z.Jaik.1301504
ZoneAlarmTrojan-PSW.Win32.Stealer.bmek
MicrosoftTrojan:Win32/ProtectorEnigma.RF!MTB
GoogleDetected
AhnLab-V3Trojan/Win.Generic.R415459
Acronissuspicious
McAfeeGenericRXPG-OJ!3214D3E0AB03
VBA32Trojan.Wacatac
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002C0DF923
RisingTrojan.ProtectorEnigma!8.1063B (CLOUD)
IkarusTrojan.Win32.Enigma
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CoinMiner.AK!tr
ZonerProbably Heur.ExeHeaderL
DeepInstinctMALICIOUS

How to remove Jaik.127447?

Jaik.127447 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment