Malware

About “Jaik.34843” infection

Malware Removal

The Jaik.34843 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jaik.34843 virus can do?

  • Attempts to connect to a dead IP:Port (4 unique times)
  • Possible date expiration check, exits too soon after checking local time
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Deletes its original binary from disk
  • Creates a slightly modified copy of itself
  • Anomalous binary characteristics

How to determine Jaik.34843?


File Info:

crc32: CE7B3904
md5: ccf453c11db257e4bea3832b57c03a76
name: CCF453C11DB257E4BEA3832B57C03A76.mlw
sha1: 88cde5a962bb8d50370765df7cff5a37d22d359a
sha256: 3e288df0aca51f3b7e4c59215d9a580865112c757c51333a1fe274c235a89a8f
sha512: 35ed91e6da833d36b018f6d5e5e506a5a2b8ffb23a4042557326e348ed6d68ebeb601258d45503057ff385ebc58b64fb41f16aa402e8d83ca436e737115b1eaa
ssdeep: 3072:TIG8RWrNcvXLM7u265wcQcfKAvTbcJDzoJ/Yi:EGwWrNcvLMPrcQcfKAvT4pEFYi
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Jaik.34843 also known as:

K7AntiVirusBackdoor ( 0053e8561 )
DrWebBackDoor.Golf.198
MicroWorld-eScanGen:Variant.Jaik.34843
CAT-QuickHealTrojan.Beaugrit.14262
ALYacGen:Variant.Jaik.34843
CylanceUnsafe
ZillyaBackdoor.Generic.Win32.3037
SangforMalware
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaBackdoor:Win32/Urelas.29c4a17b
K7GWTrojan ( 004b901e1 )
Cybereasonmalicious.11db25
TrendMicroTROJ_GEN.R002C0DE620
BaiduWin32.Trojan.Urelas.b
CyrenW32/S-639ff200!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Urelas.U
APEXMalicious
AvastWin32:Dropper-NZI [Drp]
ClamAVWin.Malware.Urelas-6717394-0
GDataGen:Variant.Jaik.34843
KasperskyHEUR:Backdoor.Win32.Generic
BitDefenderGen:Variant.Jaik.34843
NANO-AntivirusTrojan.Win32.Golf.ffqyhp
ViRobotTrojan.Win32.Z.Urelas.239418
TencentMalware.Win32.Gencirc.10b62973
Ad-AwareGen:Variant.Jaik.34843
SophosTroj/Urelas-Q
ComodoTrojWare.Win32.Urelas.SH@5674sp
F-SecureHeuristic.HEUR/AGEN.1103249
BitDefenderThetaAI:Packer.41D2B7E320
VIPRETrojan.Win32.Urelas.ab (v)
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Trojan.dm
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.ccf453c11db257e4
EmsisoftGen:Variant.Jaik.34843 (B)
SentinelOneDFI – Malicious PE
F-ProtW32/S-639ff200!Eldorado
Endgamemalicious (high confidence)
WebrootW32.Dropper.Gen
AviraHEUR/AGEN.1103249
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Win32.Urelas
MicrosoftTrojan:Win32/Urelas.AA
JiangminTrojan/GenericCryptor.bt
ArcabitTrojan.Jaik.D881B
AegisLabTrojan.Win32.Generic.m!c
ZoneAlarmHEUR:Backdoor.Win32.Generic
AhnLab-V3Trojan/Win32.Urelas.C2743068
Acronissuspicious
McAfeePWS-FBQQ!CCF453C11DB2
MAXmalware (ai score=88)
VBA32SScope.Backdoor.Urelas.3114
MalwarebytesTrojan.Agent
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DE620
RisingBackdoor.Generic!8.CE (TFE:dGZlOgUDIhs9qzooTg)
YandexTrojan.Urelas!D/bN+0gEKcg
IkarusTrojan.Win32.Beaugrit
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Urelas.U!tr
AVGWin32:Dropper-NZI [Drp]
Paloaltogeneric.ml
Qihoo-360Win32/Backdoor.Urelas.E

How to remove Jaik.34843?

Jaik.34843 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment