Malware

About “Jaik.81687” infection

Malware Removal

The Jaik.81687 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware - Review 2020

GridinSoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend to use GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the TRIAL period.
6-day free trial available.

What Jaik.81687 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Enumerates running processes
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Detects BullGuard Antivirus through the presence of a library
  • Detects Sandboxie through the presence of a library
  • Detects SunBelt Sandbox through the presence of a library

How to determine Jaik.81687?


File Info:

name: 82B72FFBA4683C087681.mlw
path: /opt/CAPEv2/storage/binaries/0ff918f16fe31ae5573b1e34a708d5cbf455d16b4219b0307d3caa40217a455b
crc32: 1218F1F3
md5: 82b72ffba4683c0876816492564394aa
sha1: cd37ee207472dfb7eadf32a3724ba3569f01118f
sha256: 0ff918f16fe31ae5573b1e34a708d5cbf455d16b4219b0307d3caa40217a455b
sha512: e1d946f7bfa5a2745cb7c36f431f6ee9bab3e75333aa312b0d496675c16b6ab03ccabdbb0f1676102f18534eeedf7bcef034470f06876eafe1772d5de263a4e0
ssdeep: 49152:QhSFOZ0BJRT7eoKVy+aliKC+y/zhwoJgH0iy6l/zJsJwNNd:muOZ0f1qot+61o/zhw+gH0iTsJwNd
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T156A51230F7A5D139F2F753B5217686257A1A7CB24310358F62B22AF526B9DE4ACF1302
sha3_384: bc462da0a88e1aec5c89343011c322c201fd7cc30f6822da8b52b18cc1605747767a515510ba0dc8d32f5556d5848606
ep_bytes: 8bff558bece846040000e8110000005d
timestamp: 2022-06-19 20:54:27

Version Info:

FileVersion: 4.68.47.22
LegalCopyright: Copyright ® 2016-2022 from Lamis Limited.
ProductVersion: 8.33.46.72
Translation: 0x0800 0x03a4

Jaik.81687 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Agent.i!c
MicroWorld-eScanGen:Variant.Jaik.81687
FireEyeGeneric.mg.82b72ffba4683c08
McAfeeArtemis!82B72FFBA468
CylanceUnsafe
SangforInfostealer.Win32.Agent.gen
K7AntiVirusTrojan ( 005946ae1 )
AlibabaTrojan:Win32/GenCBL.b784c56d
K7GWTrojan ( 005946ae1 )
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/GenCBL.CGK
TrendMicro-HouseCallTROJ_GEN.R002C0WFM22
Paloaltogeneric.ml
KasperskyHEUR:Backdoor.Win32.Remcos.gen
BitDefenderGen:Variant.Jaik.81687
AvastWin32:MalwareX-gen [Trj]
TencentWin32.Trojan.Falsesign.Eanf
Ad-AwareGen:Variant.Jaik.81687
EmsisoftGen:Variant.Jaik.81687 (B)
TrendMicroTROJ_GEN.R002C0WFM22
McAfee-GW-EditionArtemis!Trojan
SophosMal/Generic-S
APEXMalicious
MAXmalware (ai score=99)
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Jaik.D13F17
GDataGen:Variant.Jaik.81687
CynetMalicious (score: 100)
ALYacGen:Variant.Jaik.81687
MalwarebytesSpyware.PasswordStealer
IkarusTrojan.Win32.Raccrypt
RisingTrojan.Generic@AI.91 (RDML:oTEDxhC3zkw8Hdw606oD9g)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.HHMU!tr
AVGWin32:MalwareX-gen [Trj]
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Jaik.81687?

Jaik.81687 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment