Malware

What is “Jaik.39200”?

Malware Removal

The Jaik.39200 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jaik.39200 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Tries to unhook or modify Windows functions monitored by Cuckoo

How to determine Jaik.39200?


File Info:

crc32: BE721AC9
md5: e33fe01acfdb9af3115939aaca64f4b3
name: E33FE01ACFDB9AF3115939AACA64F4B3.mlw
sha1: 52964b46af438e54ae32655beddd3b3af5055183
sha256: eeb2b800d7ffcf164cc802ccf1b71d7f1b86a15442b22d70468779e00f8568a8
sha512: f70caa9de4a7d649e35702d3ec159925bb6c76f319d7edb226c23e1a0f66aa7da17ac43a7165e92580af0c36a481c63e91559a7adce0b353f07942abd3540626
ssdeep: 12288:hjxw+2rN47NU4wdfTVaBDXeR45SS4s2TvvePKxxrNlWjyzu6NEabYMM/gJ8aqM3:hlV2Z47PMsDES3SHePIDmyzn8LU8zg
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: x4f59x7b19 x7248x6743x6240x6709
FileVersion: 1.3.0.0
CompanyName: x4f59x7b19
Comments: UPX3.96 x52a0x8131x58f3x8f6fx4ef6
ProductName: UPX 3.96 x52a0x8131x58f3x8f6fx4ef6
ProductVersion: 1.3.0.0
FileDescription: UPX3.96 x52a0x8131x58f3x8f6fx4ef6
Translation: 0x0804 0x04b0

Jaik.39200 also known as:

K7AntiVirusTrojan ( 005246d51 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CAT-QuickHealRisktool.Flystudio.17324
ALYacGen:Variant.Jaik.39200
CylanceUnsafe
SangforTrojan.Win32.Agent.nil
AlibabaTrojan:Win32/QQWare.c27d6ca7
K7GWTrojan ( 00013a151 )
Cybereasonmalicious.acfdb9
CyrenW32/Trojan.CLL.gen!Eldorado
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Malware.Generic-9820446-0
BitDefenderGen:Variant.Jaik.39200
MicroWorld-eScanGen:Variant.Jaik.39200
Ad-AwareGen:Variant.Jaik.39200
SophosGeneric PUA FC (PUA)
ComodoPacked.Win32.MUPX.Gen@24tbus
BitDefenderThetaGen:NN.ZexaF.34804.5mKfaCeeS!cb
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
FireEyeGeneric.mg.e33fe01acfdb9af3
EmsisoftGen:Variant.Jaik.39200 (B)
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_100%
Antiy-AVLGrayWare/Win32.FlyStudio.a
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Occamy.CEE
ArcabitTrojan.Jaik.D9920
AegisLabTrojan.Win32.Malicious.4!c
GDataGen:Variant.Jaik.39200
AhnLab-V3Malware/Win32.Generic.C3990834
Acronissuspicious
McAfeeRDN/Generic.tfr
MAXmalware (ai score=84)
MalwarebytesMalware.Heuristic.1003
PandaTrj/GdSda.A
RisingTrojan.Kazy!1.6838 (CLOUD)
IkarusTrojan.Win32.QQWare
MaxSecureTrojan.Malware.73569913.susgen
FortinetW32/Agent.65CA!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Jaik.39200?

Jaik.39200 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment