Malware

Jatif.1727 malicious file

Malware Removal

The Jatif.1727 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Jatif.1727 virus can do?

  • Presents an Authenticode digital signature
  • Network activity detected but not expressed in API logs
  • Unusual version info supplied for binary

How to determine Jatif.1727?


File Info:

crc32: D2AFB8E7
md5: f2120653e73feff522cc5336c253fb96
name: F2120653E73FEFF522CC5336C253FB96.mlw
sha1: 068ad31e7b63c3765dc0a9af65bb957eac3eb15e
sha256: 3a2a76b54be9df6e2c1a5fd727a30afc9431675a2404c476ad56a5adbc3c5852
sha512: cb02f48a20db0613d94f1b5d58602ed3049e61dc287c7baf98296ca0bc96f37990e9c0b2937881a283eb3e92ad8876b984e41074908e533d2cad020fe0e9e5b0
ssdeep: 12288:LDuWNvtS/PHV4c1JwX2afK+ixeCzseMb01JQntLOCr8XeM10j:LDlvEPTJmix5zsemr8NA
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
InternalName: setup.exe
FileVersion: 16.0.28315.86 built by: D16.0
CompanyName:
ProductName:
ProductVersion: 16.0.28315.86
FileDescription: Setup
OriginalFilename: setup.exe
Translation: 0x0409 0x04b0

Jatif.1727 also known as:

MicroWorld-eScanGen:Variant.Jatif.1727
CAT-QuickHealTrojan.Jatif
ALYacTrojan.Fakesupport.A
CylanceUnsafe
BitDefenderGen:Variant.Jatif.1727
K7GWRiskware ( 0049f6ae1 )
K7AntiVirusRiskware ( 0049f6ae1 )
ArcabitTrojan.Jatif.D6BF
CyrenW32/Trojan.LJWX-8556
SymantecTrojan.Gen.2
Paloaltogeneric.ml
AlibabaTrojan:Win32/BadCert.c17eda0a
Ad-AwareGen:Variant.Jatif.1727
EmsisoftMalCert-S.CY (A)
ComodoMalware@#m0jzdu84uxzb
DrWebTrojan.Fakealert.59250
TrendMicroPUA.Win32.FakeSupport.B
McAfee-GW-EditionArtemis!Trojan
FireEyeGen:Variant.Jatif.1727
SophosMal/Generic-R + Mal/BadCert-Gen
IkarusTrojan.Win32.Gencbl
KingsoftWin32.Troj.Generic.a.(kcloud)
MicrosoftExploit:O97M/CVE-2017-11882.BI!MTB
ViRobotTrojan.Win32.Z.Jatif.798336
GDataGen:Variant.Jatif.1727
McAfeeArtemis!F2120653E73F
MAXmalware (ai score=88)
VBA32Trojan.FakeAlert
MalwarebytesTrojan.Crypt
ESET-NOD32a variant of Win32/GenCBL.YY
TrendMicro-HouseCallPUA.Win32.FakeSupport.B
RisingTrojan.MalCert!1.D1BB (CLOUD)
AVGWin32:DangerousSig [Trj]
Cybereasonmalicious.3e73fe
AvastWin32:DangerousSig [Trj]
Qihoo-360Generic/Trojan.80d

How to remove Jatif.1727?

Jatif.1727 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment