Malware

Jatif.1341 (file analysis)

Malware Removal

The Jatif.1341 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jatif.1341 virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Exhibits possible ransomware file modification behavior

How to determine Jatif.1341?


File Info:

crc32: 94B7EE38
md5: 108a298b4ed5b4e77541061f32e55751
name: 108A298B4ED5B4E77541061F32E55751.mlw
sha1: 6ab4f716180cc48855d65f77d4bdbd3d709a2f19
sha256: f65722a5c638266b43258c6787eb69ccd8d94e149d68444f8194f448f232da0d
sha512: ffb83a1042fe51776d0eb6db18bf269d4379963215b9508db8f0a7ad6897dbd86fb392daba542d6de4d85ab00a2a29c0557c7b28bb1d5434750bfbc49c9d0455
ssdeep: 12288:qsVh9iWF7kMHflaLUkBhFfJ+XfcjOS3BElS6Shgg:lVRlaVcEXF6Shgg
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2020
InternalName: fdsgfreg
FileVersion: 1.0.0.2
CompanyName: sfdgfdsfdg
ProductName: Doifg dsfhsdfiuzgds g
ProductVersion: 1.0.0.2
FileDescription: sfdgfdsg
OriginalFilename: setup.exe
Translation: 0x0412 0x04b0

Jatif.1341 also known as:

K7AntiVirusTrojan ( 005621a71 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.30595
CynetMalicious (score: 85)
ALYacTrojan.Ransom.ChaCha
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.1961803
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Kryptik.dc75a8be
K7GWTrojan ( 005621a71 )
Cybereasonmalicious.b4ed5b
SymantecDownloader
ESET-NOD32a variant of Win32/Kryptik.HAFZ
AvastWin32:DangerousSig [Trj]
ClamAVWin.Ransomware.Maze-7473772-0
KasperskyTrojan-Ransom.Win32.Maze.et
BitDefenderGen:Variant.Jatif.1341
NANO-AntivirusTrojan.Win32.Encoder.gzsfbs
MicroWorld-eScanGen:Variant.Jatif.1341
TencentWin32.Trojan.Gen.Dvzu
Ad-AwareGen:Variant.Jatif.1341
SophosMal/Generic-R + Troj/Maze-D
F-SecureTrojan.TR/AD.MazeRansom.ienxf
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom.Win32.MAZE.AF
McAfee-GW-EditionRansom-Maze!108A298B4ED5
FireEyeGeneric.mg.108a298b4ed5b4e7
EmsisoftMalCert.A (A)
AviraTR/AD.MazeRansom.ienxf
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan[Ransom]/Win32.Cryptor
MicrosoftRansom:Win32/Maze.PA!MTB
ArcabitTrojan.Jatif.D53D
AegisLabTrojan.Win32.Gen.j!c
ZoneAlarmTrojan-Ransom.Win32.Maze.et
GDataGen:Variant.Jatif.1341
TACHYONRansom/W32.Maze.1118544
AhnLab-V3Trojan/Win32.FileCoder.C4095762
McAfeeRansom-Maze!108A298B4ED5
MAXmalware (ai score=100)
VBA32BScope.Trojan.Wacatac
MalwarebytesTrojan.MalPack.RVRS
PandaTrj/CI.A
TrendMicro-HouseCallRansom.Win32.MAZE.AF
RisingTrojan.GenKryptik!8.AA55 (CLOUD)
YandexTrojan.GenAsa!VGYGzRTl5ik
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.77466543.susgen
FortinetW32/GenKryptik.EDCX!tr.ransom
AVGWin32:DangerousSig [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Maze.HgIASRQA

How to remove Jatif.1341?

Jatif.1341 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment