Malware

Ser.Jaik.968 information

Malware Removal

The Ser.Jaik.968 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ser.Jaik.968 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Deletes its original binary from disk
  • Attempts to remove evidence of file being downloaded from the Internet
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Ser.Jaik.968?


File Info:

crc32: 3206E060
md5: e76f2340bc5c552ea620111fca0f3e6f
name: 22UWQlNleMJKoulGBUvg.exe
sha1: fbe4c7e38e8532a4ca1aaeaa9940e7c391a12bfd
sha256: ed5e004a3d0174d9dd60cc3eccfc7986676fad049e7eea9b76056321f4996a38
sha512: ef490a30c2a847a9f8bddcb0189f1853d4494e02d6d6384721eacd8de27d28ce2c2c1180e6374077b8db13601c066eaaf9b6f9a7d86f08281c4cb5eddacea11c
ssdeep: 6144:UnRQlTnfRHBl5aGnDZFwLShwgK8Sr0yhzZ4eI1Dx2XIM0mvLpEN60ofWv:URQlTfNE8wuw5rV9ODx2XIMxa5ofWv
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2001
InternalName: WBP
FileVersion: 1, 0, 0, 1
ProductName: WBP Application
ProductVersion: 1, 0, 0, 1
FileDescription: WBP MFC Application
OriginalFilename: WBP.EXE
Translation: 0x0409 0x04b0

Ser.Jaik.968 also known as:

MicroWorld-eScanGen:Variant.Ser.Jaik.968
FireEyeGeneric.mg.e76f2340bc5c552e
ALYacGen:Variant.Ser.Jaik.968
CylanceUnsafe
BitDefenderGen:Variant.Ser.Jaik.968
Cybereasonmalicious.38e853
BitDefenderThetaGen:NN.ZexaF.34082.uq1@ayRQ5Yei
F-ProtW32/Agent.BJX.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
GDataGen:Variant.Ser.Jaik.968
Ad-AwareGen:Variant.Ser.Jaik.968
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Ser.Jaik.968 (B)
CyrenW32/Agent.BJX.gen!Eldorado
WebrootW32.Trojan.Emotet
AviraTR/AD.Emotet.vgsts
ArcabitTrojan.Ser.Jaik.968
MAXmalware (ai score=87)
VBA32BScope.TrojanPSW.Spy
PandaTrj/Emotet.A
FortinetW32/GenKryptik.EBSD!tr

How to remove Ser.Jaik.968?

Ser.Jaik.968 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment