Malware

Jaik.168544 information

Malware Removal

The Jaik.168544 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jaik.168544 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Behavioural detection: Injection (inter-process)
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Jaik.168544?


File Info:

name: 2E8F0C10D70E148445A5.mlw
path: /opt/CAPEv2/storage/binaries/9c2bdbdb601e1ef06ddc023c3b04238e52fab7f12e084bf0a019b25fa3c18ff3
crc32: 409C98F1
md5: 2e8f0c10d70e148445a54faeaa1ab492
sha1: aa018029d7cdb436eadabc89fbca674e9aead7f9
sha256: 9c2bdbdb601e1ef06ddc023c3b04238e52fab7f12e084bf0a019b25fa3c18ff3
sha512: 543338db290cf7d61d6c1ced54f76fdab65b88c41945f4b8e3e50a1580ccb031b908414900f22d6f6bbde500bc368f20e2ff346177650138f270c15993df7388
ssdeep: 6144:zmPD16yv71Ltmq6JIwvMhAqjLyVOQrbbM:zmN7ltMywvMhVCFU
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T138549E13360B9987E56622F0E45BCADD26717BD976A3831A71D77E2FE953303090B2C8
sha3_384: 5116410c5542bc4e5701aa70c99f6ec8eca1c0d598d6d1f06803e7eba092bafd2ffa50259f5ae80e185924caa01c68f0
ep_bytes: b82cc34a005064ff3500000000648925
timestamp: 1992-06-19 22:22:17

Version Info:

CompanyName: 抓贼软件
FileDescription: 抓贼软件
FileVersion: 1.4.2.0
InternalName: 抓贼软件
LegalCopyright: 抓贼软件
LegalTrademarks: 抓贼软件
OriginalFilename: 抓贼软件
ProductName: 抓贼软件
ProductVersion: 1.320
Comments: 抓贼软件
Translation: 0x0804 0x03a8

Jaik.168544 also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanGen:Variant.Jaik.168544
FireEyeGeneric.mg.2e8f0c10d70e1484
CrowdStrikewin/malicious_confidence_70% (D)
APEXMalicious
BitDefenderGen:Variant.Jaik.168544
EmsisoftGen:Variant.Jaik.168544 (B)
VIPREGen:Variant.Jaik.168544
Trapminemalicious.high.ml.score
GDataGen:Variant.Jaik.168544
ArcabitTrojan.Jaik.D29260
VBA32TScope.Trojan.Delf
ALYacGen:Variant.Jaik.168544
MAXmalware (ai score=87)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
Cybereasonmalicious.9d7cdb
DeepInstinctMALICIOUS

How to remove Jaik.168544?

Jaik.168544 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment