Malware

Should I remove “Jaik.39542”?

Malware Removal

The Jaik.39542 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jaik.39542 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • Attempts to delete volume shadow copies
  • Checks for the presence of known windows from debuggers and forensic tools
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself
  • Uses suspicious command line tools or Windows utilities

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Jaik.39542?


File Info:

crc32: FE062EC4
md5: 4ca90b5ec807bddfb8c629ff8a82a888
name: tmpsj03qiy8
sha1: c6bc6456813b2d35e3702ab38af170ccefe09c07
sha256: a933dae438d7f9c2285b705bae251ceeb2fe486e7f9f93b73eb38579db48ce2b
sha512: 7d0a5c194c0d60865427f7b09835558057bc17fcd8ceef70606df46f8429a87a45a267aa131d4f8f398e82f2ff3a46c5255afcfef8a58ab89ec8ede08ec100e8
ssdeep: 12288:zM98452+gLvIv8xGXmrjHko4ObBlhM3/32:zyF8Bgkx6mrjHko4ObhMPG
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9Cylance 1995-Present
InternalName: ClnsSide
CompanyName: Cylance
LegalTrademarks: Copyright xa9Cylance 1995-Present
ProductName: ClnsSide
Languages: English
ProductVersion: 7.3.32.4
FileDescription: Criticisms Sep Xmlbulklad
OriginalFilename: ClnsSide
Translation: 0x0409 0x04b0

Jaik.39542 also known as:

BkavW32.AIDetectVM.malware
MicroWorld-eScanGen:Variant.Jaik.39542
FireEyeGeneric.mg.4ca90b5ec807bddf
McAfeeArtemis!4CA90B5EC807
CylanceUnsafe
SangforMalware
Cybereasonmalicious.6813b2
ArcabitTrojan.Jaik.D9A76
TrendMicroMal_HPGen-37b
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan.Win32.DelShad.cvn
BitDefenderGen:Variant.Jaik.39542
AvastWin32:Trojan-gen
RisingMalware.Heuristic!ET#86% (RDMK:cmRtazqF9tUAfsaR3I9+d57EskEO)
Ad-AwareGen:Variant.Jaik.39542
SophosMal/Generic-S
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Generic.hc
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Jaik.39542 (B)
SentinelOneDFI – Malicious PE
WebrootW32.Malware.Gen
MicrosoftTrojan:Win32/Wacatac.C!ml
Endgamemalicious (high confidence)
ZoneAlarmTrojan.Win32.DelShad.cvn
GDataGen:Variant.Jaik.39542
Acronissuspicious
ALYacGen:Variant.Jaik.39542
MAXmalware (ai score=88)
VBA32BScope.TrojanRansom.Shade
ESET-NOD32a variant of Win32/Kryptik.HCEM
TrendMicro-HouseCallMal_HPGen-37b
IkarusTrojan-Ransom.GandCrab
eGambitUnsafe.AI_Score_100%
BitDefenderThetaGen:NN.ZexaF.34104.Iq0@aOu5G3ni
AVGWin32:Trojan-gen
PandaTrj/RnkBend.A
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360HEUR/QVM10.1.2A4F.Malware.Gen

How to remove Jaik.39542?

Jaik.39542 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment