Malware

Jatif.1502 malicious file

Malware Removal

The Jatif.1502 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jatif.1502 virus can do?

  • Presents an Authenticode digital signature
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Jatif.1502?


File Info:

crc32: 7D9C49AD
md5: 2749f99ebc58564c2e77fc3c73456305
name: 2749F99EBC58564C2E77FC3C73456305.mlw
sha1: fcdbde4925ed71f23b429fd68e5efe09dff51b6b
sha256: 1a378c77c4f3a9253f225dbae1e2cca0c08b011d51bf616ae3686ea5cf6ead3c
sha512: 18e840bfbce2b361588502f0f047d00975665fbc944ba9926943eb7943d2e27957081510112a8a9b62c9389463be51e52a1e6d1667eca0a97cb2b4b856973f40
ssdeep: 3072:n1E/rS2paccKntcrp2KLxp4KYnZFJLSDyASe5a9Dm1Yk7Qk:n1onY2LZFUDj5aBxS
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright: Copyright 2017 SoftwareX Corp. All rights reserved.
Publisher: SoftwareX Corp
FileVersion: 1.0.3.4
CompanyName: SoftwareX Corp
ProductName: FreebieSoftSetup
ProductVersion: 1.0.3.4
FileDescription: Freebie Soft Setup
Translation: 0x0409 0x04e4

Jatif.1502 also known as:

K7AntiVirusAdware ( 005866d21 )
DrWebAdware.Downware.18301
ALYacGen:Variant.Jatif.1502
CrowdStrikewin/malicious_confidence_100% (D)
K7GWAdware ( 005866d21 )
Cybereasonmalicious.ebc585
ESET-NOD32Win32/Adware.OpenSUpdater.CS
APEXMalicious
AvastWin32:Adware-gen [Adw]
ClamAVWin.Downloader.Sodinokibi-7641635-0
BitDefenderGen:Variant.Jatif.1502
NANO-AntivirusTrojan.Win32.Updater.esyupk
MicroWorld-eScanGen:Variant.Jatif.1502
TencentWin32.Trojan.Application.Hqbx
Ad-AwareGen:Variant.Jatif.1502
SophosGeneric PUA PM (PUA)
ComodoApplicUnwnt@#2sya6e4qm513j
VIPRETrojan.Win32.Generic!BT
FireEyeGen:Variant.Jatif.1502
EmsisoftApplication.Downloader (A)
WebrootW32.Adware.Gen
AviraHEUR/AGEN.1110762
MicrosoftPUADlManager:Win32/OpenDownloadManager
GDataGen:Variant.Jatif.1502
VBA32suspected of Trojan.Downloader.gen
MAXmalware (ai score=98)
MalwarebytesAdware.SpecialSearchOffer
PandaPUP/SoftwareUpdater
AVGWin32:Adware-gen [Adw]

How to remove Jatif.1502?

Jatif.1502 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment