Malware

Jaik.49101 (file analysis)

Malware Removal

The Jaik.49101 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jaik.49101 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Spanish (Paraguay)
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Jaik.49101?


File Info:

crc32: 9967A4B4
md5: 1a538d7614d9fcc6baa28a796ffd27c2
name: 1A538D7614D9FCC6BAA28A796FFD27C2.mlw
sha1: 4b271f964c9fe3d08919fbbdd35b2cac4e8ae5ba
sha256: ed2d39a642c7cd45bb83771a2f88712bf7e085484b278293e97f8a738e851525
sha512: 17dd35f3592984148a7edd22d347595197742fee1cd68f99565a481f6f6017b95ee13051426d3fdf8d64d4149ae1f1da56dbc6191896c18a5a2b2c430a6f4f5d
ssdeep: 12288:xrTZVmy6LosUYLkFPkQJEQ0EP77WfwZjUj:tTnMLoKL0v0SSKU
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translations: 0x0512 0x00ac

Jaik.49101 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Stealer.l!c
Elasticmalicious (high confidence)
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderGen:Variant.Jaik.49101
BaiduWin32.Trojan.Kryptik.jm
CyrenW32/Kryptik.FRX.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HNFJ
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Spy.Win32.Stealer.gen
MicroWorld-eScanGen:Variant.Ulise.319154
Ad-AwareGen:Variant.Ulise.319154
SophosMal/Generic-S
McAfee-GW-EditionBehavesLike.Win32.Generic.gh
FireEyeGeneric.mg.1a538d7614d9fcc6
EmsisoftGen:Variant.Ulise.319154 (B)
SentinelOneStatic AI – Suspicious PE
eGambitUnsafe.AI_Score_84%
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Variant.Jaik.49101
Acronissuspicious
McAfeeRDN/Generic PWS.y
MAXmalware (ai score=82)
VBA32BScope.Trojan.Sabsik.FL
MalwarebytesTrojan.MalPack.GS
TrendMicro-HouseCallTROJ_GEN.R002H0DK521
RisingTrojan.Generic@ML.87 (RDML:ciWd1O3+0nEY1p4x02OlXQ)
IkarusTrojan.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.HNFJ!tr
Paloaltogeneric.ml

How to remove Jaik.49101?

Jaik.49101 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment