Malware

Jaik.82429 removal instruction

Malware Removal

The Jaik.82429 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jaik.82429 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Enumerates running processes
  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Jaik.82429?


File Info:

name: 74323A05D8425B2EE740.mlw
path: /opt/CAPEv2/storage/binaries/807d6fd3c3fefed07176cae9b9dee12aeb37c3326526f7f14a8e3d36d2b54292
crc32: 6CBB8347
md5: 74323a05d8425b2ee740817129e32970
sha1: d4b2f6396e1b9b1cc574d2f226c7bc908d21a9d7
sha256: 807d6fd3c3fefed07176cae9b9dee12aeb37c3326526f7f14a8e3d36d2b54292
sha512: 50bcbb5a5bb10d58878a221ed69ff206f05c76da3513b65d84d3c157e7d823bc8c95a65c791c96080d58f810fbadaf3c75f03ca9a49aa130fcc791833bf2065a
ssdeep: 49152:1PP1aegA+si9FYrgsu/6yYvym1p9PSXOgqaePnT3QPhC0XDctAkJt:1P17gAICuF3m1p9qegPefTihCYctA4
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B4D533D212D68807F5E004BCD75CA31D6BF92E2CD6967BE10B96EC3BAD041647ACD70A
sha3_384: 8553098230ba299837030640e9e293fdfdc6313bfb0d226639fb11c249254174c5e4663a9203d6fb32beb75aeb2586bc
ep_bytes: 6801807500e801000000c3c317abbede
timestamp: 2022-06-11 10:06:50

Version Info:

Comments: FxSound Enhancer
CompanyName: FxSound
FileDescription: FxSound Enhancer
FileVersion: 13.023.0.0
LegalCopyright: © FxSound
LegalTrademarks:
ProductName: FxSound Enhancer
Translation: 0x0409 0x0000

Jaik.82429 also known as:

LionicTrojan.Win32.Jaik.4!c
DrWebTrojan.PWS.Banker1.37028
MicroWorld-eScanGen:Variant.Jaik.82429
FireEyeGen:Variant.Jaik.82429
ALYacGen:Variant.Jaik.82429
CylanceUnsafe
K7AntiVirusTrojan ( 005937121 )
AlibabaTrojan:Win32/QQWare.a27684a7
K7GWTrojan ( 005937121 )
BitDefenderThetaGen:NN.ZelphiCO.34786.NY0aaKdKLjEP
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/QQWare.DM
TrendMicro-HouseCallTROJ_GEN.R002H09FQ22
Paloaltogeneric.ml
BitDefenderGen:Variant.Jaik.82429
AvastWin32:Trojan-gen
Ad-AwareGen:Variant.Jaik.82429
SophosMal/Generic-S
VIPREGen:Variant.Jaik.82429
McAfee-GW-EditionBehavesLike.Win32.Trojan.vc
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Jaik.82429 (B)
IkarusTrojan.Win32.QQWare
GDataWin32.Trojan.PSE.1MRAMPX
AviraTR/QQTen.owcbf
Antiy-AVLTrojan/Generic.ASMalwS.52D4
ViRobotTrojan.Win32.Z.Jaik.2748928
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.R500571
McAfeeArtemis!74323A05D842
MAXmalware (ai score=88)
MalwarebytesMalware.AI.3616286557
APEXMalicious
RisingTrojan.QQWare!8.105 (CLOUD)
SentinelOneStatic AI – Suspicious PE
FortinetW32/QQWare.DM!tr
AVGWin32:Trojan-gen
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Jaik.82429?

Jaik.82429 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment