Malware

Jaik.50182 (B) information

Malware Removal

The Jaik.50182 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jaik.50182 (B) virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Uses Windows utilities for basic functionality
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Detects Bochs through the presence of a registry key
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Jaik.50182 (B)?


File Info:

name: 975789369AA413408A1F.mlw
path: /opt/CAPEv2/storage/binaries/5f28117d13a68929534b40512490cd95357c0a037df32b7186b3be69fe92ed4d
crc32: 4B52C67C
md5: 975789369aa413408a1f98e8f2e5aacd
sha1: 44dbbd3632dc3acf613ebe3facd23579bc6c69c8
sha256: 5f28117d13a68929534b40512490cd95357c0a037df32b7186b3be69fe92ed4d
sha512: 72af75a2df9f506858b109f83031c7a06ca4a245d46c2b8e5efa0e72ddb47af86b9adace9728e72601d562757ad0f6fcbd6192ea4c0f27cd8e12a554024e6816
ssdeep: 6144:0ijjUsllLRwpr6iuF3SRfbhtgJnxlZ4FooCb6M83L4NAVY50FFpi:Pj4slJRwU9/uwU4CU
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C9B4B06099765B36F77BDB3749B67939CB1623B7BBC3A1DB083C60D11162241AF0221E
sha3_384: 977c7e5a59001f7421d59e30ac17f101ecfdac3b5672c099fd923025956a70ec17be287a534d1ebc44457f43dea9be56
ep_bytes: 558bec6aff68c880400068ac58400064
timestamp: 2009-12-11 21:31:37

Version Info:

0: [No Data]

Jaik.50182 (B) also known as:

BkavW32.AIDetectMalware
Elasticmalicious (moderate confidence)
MicroWorld-eScanGen:Variant.Jaik.50182
CAT-QuickHealTrojan.Mauvaise.SL1
SkyhighBehavesLike.Win32.Generic.ht
ALYacGen:Variant.Jaik.50182
MalwarebytesGeneric.Malware.AI.DDS
ZillyaDownloader.Unruy.Win32.7751
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 004bcce41 )
K7GWTrojan ( 004bcce41 )
Cybereasonmalicious.69aa41
ArcabitTrojan.Jaik.DC406
BaiduWin32.Trojan-Clicker.Cycler.a
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/TrojanDownloader.Unruy.AY
APEXMalicious
TrendMicro-HouseCallTROJ_UNRUY.SMT
ClamAVWin.Downloader.Unruy-6988793-0
KasperskyHEUR:Trojan-Clicker.Win32.Cycler.gen
BitDefenderGen:Variant.Jaik.50182
NANO-AntivirusTrojan.Win32.Unruy.ibnpwx
AvastWin32:Unruy-AA [Trj]
TencentTrojan.Win32.Unruy.wa
SophosTroj/Cycler-C
F-SecureTrojan.TR/Dropper.Gen
DrWebWin32.HLLC.Asdas.22
VIPREGen:Variant.Jaik.50182
TrendMicroTROJ_UNRUY.SMT
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.975789369aa41340
EmsisoftGen:Variant.Jaik.50182 (B)
IkarusTrojan-Downloader.Win32.Unruy
JiangminTrojan.Generic.glpgv
GoogleDetected
AviraTR/Dropper.Gen
VaristW32/Unruy.N.gen!Eldorado
Antiy-AVLTrojan[Downloader]/Win32.Unruy
Kingsoftmalware.kb.a.1000
XcitiumTrojWare.Win32.TrojanSpy.BZub.~IP@f810f
MicrosoftTrojanDownloader:Win32/Unruy!pz
ZoneAlarmHEUR:Trojan-Clicker.Win32.Cycler.gen
GDataWin32.Trojan.PSE.RE8W1H
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Unruy.C5602215
Acronissuspicious
McAfeeGenericRXMN-SQ!975789369AA4
MAXmalware (ai score=82)
VBA32BScope.TrojanDownloader.Unruy
Cylanceunsafe
PandaTrj/Genetic.gen
RisingDownloader.Unruy!1.AE5E (CLASSIC)
YandexTrojan.GenAsa!S4Mv8DNs2+w
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Cycler.TL!tr
BitDefenderThetaGen:NN.ZexaF.36802.GmZ@aCKciAi
AVGWin32:Unruy-AA [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)
alibabacloudTrojan[downloader]:Win/Unruy

How to remove Jaik.50182 (B)?

Jaik.50182 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment