Malware

Jaik.41732 (B) (file analysis)

Malware Removal

The Jaik.41732 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jaik.41732 (B) virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • A process attempted to delay the analysis task.
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

aip.baidubce.com
ocsp.globalsign.com
ocsp2.globalsign.com
crl.globalsign.com

How to determine Jaik.41732 (B)?


File Info:

crc32: DE415B43
md5: 904a462e2f5c67e617b333997b759d2c
name: 904A462E2F5C67E617B333997B759D2C.mlw
sha1: 05c87c235afe6c8512a740a61bb895b0b0389a5b
sha256: 0125061f6a145e6a090119fe4abce3399a90de9d2302ebb4a84a1b8ddb866192
sha512: 08eaed76c66c3a80c61d9d8145673281ec407dc3c91dd34ea1c3f288901954965fcd9c634cb7306edc982bbd349fcb3e95bc8c1bb898bc6ba593a2c4fdaec9df
ssdeep: 12288:PQIoAGijldUAB7oDWMaweSxYSX4wF3WLI:NoAhldVQESvXTF3WLI
type: MS-DOS executable, MZ for MS-DOS

Version Info:

0: [No Data]

Jaik.41732 (B) also known as:

Elasticmalicious (high confidence)
DrWebTrojan.DownLoader39.8341
CynetMalicious (score: 100)
ALYacGen:Variant.Jaik.41732
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Virtumonde.3d151982
Cybereasonmalicious.e2f5c6
CyrenW32/Virtumonde.BW.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
AvastWin32:Evo-gen [Susp]
BitDefenderGen:Variant.Jaik.41732
MicroWorld-eScanGen:Variant.Jaik.41732
Ad-AwareGen:Variant.Jaik.41732
SophosGeneric ML PUA (PUA)
ComodoPacked.Win32.MUPACK.~KW@1huqxy
BitDefenderThetaGen:NN.ZexaF.34690.zmKeaeCcHudb
VIPRETrojan.Win32.Packer.Upack0.3.9 (ep)
TrendMicroCryp_Xed-12
McAfee-GW-EditionBehavesLike.Win32.Generic.gc
FireEyeGeneric.mg.904a462e2f5c67e6
EmsisoftGen:Variant.Jaik.41732 (B)
SentinelOneStatic AI – Malicious PE
MicrosoftTrojan:Win32/Hynamer.A!ml
GridinsoftPack.Win32.Gen.bot!ep-13077
ArcabitTrojan.Jaik.DA304
GDataGen:Variant.Jaik.41732
AhnLab-V3Packed/Upack
Acronissuspicious
McAfeeArtemis!904A462E2F5C
MAXmalware (ai score=81)
PandaTrj/Pupack.A
TrendMicro-HouseCallCryp_Xed-12
RisingMalware.Heuristic!ET#99% (RDMK:cmRtazqrTJwq437Uu7b7pOn2tRbP)
YandexPacked/Upack
MaxSecureTrojan.W32.Packer.Upack0.3.9
FortinetRiskware/Cryp_Xed
AVGWin32:Evo-gen [Susp]
Paloaltogeneric.ml

How to remove Jaik.41732 (B)?

Jaik.41732 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment