Malware

Jaik.152108 removal guide

Malware Removal

The Jaik.152108 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jaik.152108 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the EnigmaStub malware family
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Jaik.152108?


File Info:

name: 9221FE0C32B803773FF0.mlw
path: /opt/CAPEv2/storage/binaries/7e13c37219947b399890094885109910f0ff050536445992ed532e6f83e601cd
crc32: ABB1BBD8
md5: 9221fe0c32b803773ff0f0a1c7be83c7
sha1: 162f3600a5bbfe9aae84e1cfa43750fc5e65f9b2
sha256: 7e13c37219947b399890094885109910f0ff050536445992ed532e6f83e601cd
sha512: 40461e9625a01691ff5d1f2cbaf32f608ff8a48a4b40ce89731d4e6756c428e4eeb256dd781129b7fe4d5c7853294c53fa56e10d138fa395aedd3922793b7ffb
ssdeep: 49152:lFJcON5dN/12rDS8nw8i3eaYmfttLuM+2hmKBULBVSGQ4e3:5cOXzdKS87iXVN+lQ4
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T191B533994A9053A9CFFD3FF5047C2EA717B5D96EF0208AD082FA4214AF99FC5430646E
sha3_384: 0295552cfb83a7e90dbe9b25c6e4ad609bfc506731af1ad1e6766c339f63290fbb1703c5d7f336af9737b550522ec3c7
ep_bytes: eb0800e613000000000060e800000000
timestamp: 2023-03-12 16:16:39

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription:
FileVersion: 3.3.3.4
InternalName:
LegalCopyright:
LegalTrademarks: microsoft corporation
OriginalFilename:
ProductName:
ProductVersion: 3.3.2.2
Assembly Version: 3.3.2.2

Jaik.152108 also known as:

tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Jaik.152108
SkyhighBehavesLike.Win32.Generic.vc
SangforSuspicious.Win32.Save.ins
BitDefenderGen:Variant.Jaik.152108
BitDefenderThetaGen:NN.ZexaF.36792.kA0@aC8wh4e
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Packed.Enigma.AK
CynetMalicious (score: 100)
APEXMalicious
SophosGeneric ML PUA (PUA)
VIPREGen:Variant.Jaik.152108
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.9221fe0c32b80377
EmsisoftGen:Variant.Jaik.152108 (B)
IkarusTrojan-Spy.Agent
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Jaik.D2522C
GDataGen:Variant.Jaik.152108
GoogleDetected
ALYacGen:Variant.Jaik.152108
MAXmalware (ai score=83)
DeepInstinctMALICIOUS
Cylanceunsafe
ZonerProbably Heur.ExeHeaderL
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
CrowdStrikewin/malicious_confidence_90% (D)

How to remove Jaik.152108?

Jaik.152108 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment