Malware

Jaiko.4690 removal guide

Malware Removal

The Jaiko.4690 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jaiko.4690 virus can do?

  • Creates RWX memory
  • A process created a hidden window
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Uses Windows utilities for basic functionality
  • Attempts to restart the guest VM
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs

Related domains:

edgedl.me.gvt1.com
update.googleapis.com

How to determine Jaiko.4690?


File Info:

crc32: 8DCA3C38
md5: 6c44a8408bb210fe5839418f8c2e819a
name: 6C44A8408BB210FE5839418F8C2E819A.mlw
sha1: df9b7368fc319c87f7726846040d395249566c26
sha256: 80b68099fe9f2ef272a94f438aa587a2daa8165b8e41bb2820e2f9da86f8c18e
sha512: 653d08aef0f242fc2b42d710cd26eb4f956eb2aedc01539c96d6af820d14cc5934cd17b4717cbee91df751892d6588d1b11ea0ad0c031546a9cf109cb8b6be1b
ssdeep: 1536:szb2hmb5pt50X8gU20sDSqq2lqDH/FImtZ:iqhw5eX3U20sDSqq2yH/6I
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Jaiko.4690 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0055e4091 )
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop.65386
ClamAVWin.Trojan.Hmblocker-145
CAT-QuickHealTrojanDropper.Wlock.AA6
ALYacGen:Variant.Jaiko.4690
CylanceUnsafe
ZillyaTrojan.LockScreen.Win32.1654
BitDefenderGen:Variant.Jaiko.4690
K7GWTrojan ( 0055e4091 )
Cybereasonmalicious.08bb21
SymantecTrojan.Ransomlock
ESET-NOD32multiple detections
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
AlibabaRansom:Win32/HmBlocker.04621361
NANO-AntivirusTrojan.Win32.Winlock.bsinq
ViRobotTrojan.Win32.A.HmBlocker.49152.C[UPX]
MicroWorld-eScanGen:Variant.Jaiko.4690
TencentWin32.Trojan.Hmblocker.Wptk
Ad-AwareGen:Variant.Jaiko.4690
SophosMal/Agent-IE
ComodoTrojWare.Win32.Trojan.Ransom.~D@465peh
BitDefenderThetaAI:Packer.CC95BBA91F
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.qc
FireEyeGeneric.mg.6c44a8408bb210fe
EmsisoftGen:Variant.Jaiko.4690 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/HmBlocker.amn
AviraTR/Dropper.Gen
KingsoftWin32.Troj.Undef.(kcloud)
GDataGen:Variant.Jaiko.4690
McAfeeArtemis!6C44A8408BB2
MAXmalware (ai score=100)
VBA32Trojan.Pornobody.7405
YandexTrojan.LockScreen!+LPgLIj6QUs
IkarusTrojan-Ransom.HmBlocker
FortinetW32/Generic.AP.350632!tr
PandaGeneric Malware

How to remove Jaiko.4690?

Jaiko.4690 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment