Malware

Jaik.190014 information

Malware Removal

The Jaik.190014 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jaik.190014 virus can do?

  • Performs HTTP requests potentially not found in PCAP.
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Jaik.190014?


File Info:

name: F9F771688B4FBD38BDAD.mlw
path: /opt/CAPEv2/storage/binaries/a1a3a8e63cfc1222cf621329d97dec6e6de25c914b421adba2ef623c035d6a39
crc32: 9C644522
md5: f9f771688b4fbd38bdad0f5c991311bf
sha1: d1848ea72ff85f8253e94ced4a1405fd21b75ae9
sha256: a1a3a8e63cfc1222cf621329d97dec6e6de25c914b421adba2ef623c035d6a39
sha512: 361121972a383d6b2495eb1955a6e48ee55876cf287fb9e2f08d773e6e83452db7525531b86e953068bf6d2be9c204b80b498a4102814bb57779a621574cc503
ssdeep: 49152:CtJJhgDnMqvPqp4nGqkkd1k9e+X+Vwmed:CzJ0Mqvip4GqsX+Vwmed
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EC85AE13B121CCB2D6051F3152B643B49A794E0926B4CE9BE7E4FD2AED320529777B0E
sha3_384: 6fdefc7988984b10f5d0a9c0932e4e2b5faf416b7991c8c231566f754f86de97348bf5efd5a35688e4f770a78edcfbbb
ep_bytes: 558bec6aff6818af540068bc8f4b0064
timestamp: 2011-07-05 17:19:00

Version Info:

FileVersion: 1.1.6.30
FileDescription: Www.Sys8.cC
ProductName: Syser Speeder
ProductVersion: 1.1.6.30
LegalCopyright: 作者版权所有 请尊重并使用正版
Comments: Www.Sys8.cC
Translation: 0x0804 0x04b0

Jaik.190014 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.lq3h
MicroWorld-eScanGen:Variant.Jaik.190014
CAT-QuickHealRisktool.Flystudio.16886
SkyhighBehavesLike.Win32.Generic.th
McAfeeGenericRXEM-ZT!F9F771688B4F
Cylanceunsafe
SangforSuspicious.Win32.Save.ins
Cybereasonmalicious.72ff85
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
CynetMalicious (score: 100)
APEXMalicious
BitDefenderGen:Variant.Jaik.190014
AvastWin32:Evo-gen [Trj]
EmsisoftGen:Variant.Jaik.190014 (B)
F-SecureTrojan:W32/DelfInject.R
VIPREGen:Variant.Jaik.190014
TrendMicroTROJ_GEN.R002C0PJP23
FireEyeGeneric.mg.f9f771688b4fbd38
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.RMXC1R
WebrootW32.Trojan.Gen
VaristW32/Agent.EW.gen!Eldorado
Antiy-AVLTrojan/Win32.FlyStudio.a
Kingsoftmalware.kb.a.991
XcitiumTrojWare.Win32.TrojanDropper.Agent.HNMS@4xnjpy
ArcabitTrojan.Jaik.D2E63E
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3Malware/Win.ZT.C5519273
BitDefenderThetaGen:NN.ZexaF.36792.Qr0@aiNDifnb
ALYacGen:Variant.Jaik.190014
MAXmalware (ai score=86)
VBA32BScope.Trojan.Casur
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R002C0PJP23
RisingTrojan.Generic@AI.94 (RDML:kKLlAw/x25r3eEza7QbRQA)
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/Application
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Jaik.190014?

Jaik.190014 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment