Malware

About “Jalapeno.1959” infection

Malware Removal

The Jalapeno.1959 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jalapeno.1959 virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine Jalapeno.1959?


File Info:

name: CA406DA3F49B304C3346.mlw
path: /opt/CAPEv2/storage/binaries/24c1632687b1910ca6ab7afbd1dc7fabad718b7361e41cfa41439f987233bff2
crc32: B8F51D44
md5: ca406da3f49b304c3346b86b4097ae5a
sha1: 6113498e36e1a3c25f477c8d1ec3de84e1320181
sha256: 24c1632687b1910ca6ab7afbd1dc7fabad718b7361e41cfa41439f987233bff2
sha512: 3e4ce24e241c7fa5c2f70b300642ff999a682f8f2fdce87cd23b9f6e831bd121fce12e1e39245ceef790eba420b82c24c1d042c3047b4eb42e126669406375f9
ssdeep: 96:1+dpj+Sji5cgnbn5lXXb9TzG5fYC6nNY1AKAzdy5VnPpTcpMNyZ0weS:1uwdlXXb9TzGlYC6ny1TAzunhTmMNBM
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T11BE1C86F7BA8CE77D0BFC734AA72860613B6E7059553DB1E1CC8108D6C923049AB27E5
sha3_384: 647be0c477cc9bdb5a37149e33882158c03f0df2f5e76650b332a42c1cec7a3d29f311a7bf15e790b506c46c51d5e324
ep_bytes: ff250020001000000000000000000000
timestamp: 2024-04-26 17:04:04

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: App_Web_hh3eu5n1.dll
LegalCopyright:
OriginalFilename: App_Web_hh3eu5n1.dll
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

Jalapeno.1959 also known as:

BkavW32.AIDetectMalware.CS
MicroWorld-eScanGen:Variant.Jalapeno.1959
FireEyeGen:Variant.Jalapeno.1959
MalwarebytesTrojan.WebShell.MSIL
SymantecTrojan.Gen.MBT
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Webshell.GE
APEXMalicious
KasperskyHEUR:Backdoor.MSIL.WebShell.gen
BitDefenderGen:Variant.Jalapeno.1959
AvastWin32:BackdoorX-gen [Trj]
TencentBackdoor.MSIL.WebShell.16000615
TACHYONBackdoor/W32.DN-WebShell.7168.V
EmsisoftGen:Variant.Jalapeno.1959 (B)
F-SecureTrojan.TR/Dropper.MSIL.Gen
DrWebBackDoor.WebshellNET.9
VIPREGen:Variant.Jalapeno.1959
SentinelOneStatic AI – Malicious PE
VaristW32/MSIL_Troj.CUJ.gen!Eldorado
AviraTR/Dropper.MSIL.Gen
ArcabitTrojan.Jalapeno.D7A7
ZoneAlarmHEUR:Backdoor.MSIL.WebShell.gen
GDataGen:Variant.Jalapeno.1959
GoogleDetected
AhnLab-V3Trojan/Win.AH.C5475477
ALYacGen:Variant.Jalapeno.1959
MAXmalware (ai score=83)
PandaTrj/GdSda.A
RisingMalware.Obfus/MSIL@AI.90 (RDM.MSIL2:/lCitaP6pYbpfgFCmBV61w)
IkarusTrojan.MSIL.Rozena
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Webshell.EE!tr
AVGWin32:BackdoorX-gen [Trj]

How to remove Jalapeno.1959?

Jalapeno.1959 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment