Trojan

Trojan.Downloader.JJOM (file analysis)

Malware Removal

The Trojan.Downloader.JJOM is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Downloader.JJOM virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Russian
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.Downloader.JJOM?


File Info:

name: 438A03092B773C2456C4.mlw
path: /opt/CAPEv2/storage/binaries/bdc1656fe43609383257d5ae707a44e73706524e64d82783090a2c03a62222b0
crc32: ADADFF32
md5: 438a03092b773c2456c411abc186cf23
sha1: 960a35962985862b481c19e73a927856b6d78a78
sha256: bdc1656fe43609383257d5ae707a44e73706524e64d82783090a2c03a62222b0
sha512: 6fdb7f0de5c77532820e59e66ba57b0fd138794c6fbf1dc023edfd1c5447d1a48036239a9ea779184704fd4f7af1371de5e1de52368a511a185e256077e5b560
ssdeep: 1536:rXgN3Id3L/xEB5yvmRa+l57ZZlXHQBxPatBrybhEXDyecylDh1MZXJ:rQ5Idb/mAC5Xl3AxiEEuecyRMZJ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11C73018B5B0A4296D3293332FA9E4C5192B171C0086E6FF1D7C15F4B68C3E33A59769B
sha3_384: a17598a84d30a1f3fa710c29a45de45dffe392d2d8b6136fe6555e151c7d8c4e3cb743d2cefe6f42463facb48c1cb2f7
ep_bytes: 558bec6aff68c010400068a019400064
timestamp: 2006-11-24 09:45:33

Version Info:

0: [No Data]

Trojan.Downloader.JJOM also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Agent.l9m9
MicroWorld-eScanTrojan.Downloader.JJOM
CAT-QuickHealTrojan.Agent.28136
ALYacTrojan.Downloader.JJOM
Cylanceunsafe
ZillyaTrojan.Agent.Win32.148306
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan-Downloader ( 005108751 )
AlibabaTrojanDropper:Win32/Agena.1f586c22
K7GWTrojan-Downloader ( 005108751 )
Cybereasonmalicious.92b773
ArcabitTrojan.Downloader.JJOM
BitDefenderThetaAI:Packer.0E06D5721C
CyrenW32/AgentP.A
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/TrojanDropper.Agent.AWK
APEXMalicious
ClamAVWin.Dropper.Agent-33784
KasperskyTrojan.Win32.Agent.acw
BitDefenderTrojan.Downloader.JJOM
NANO-AntivirusTrojan.Win32.Agent.jhiui
AvastWin32:Susn-D [Trj]
RisingTrojan.Agent.fwk (CLASSIC)
EmsisoftTrojan.Downloader.JJOM (B)
F-SecureTrojan.TR/Crypt.XDR.Gen
DrWebTrojan.MulDrop.18385
VIPRETrojan.Downloader.JJOM
TrendMicroTROJ_DROPPER.CIA
McAfee-GW-EditionBehavesLike.Win32.Detnat.lc
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.438a03092b773c24
SophosTroj/Agena-Fam
SentinelOneStatic AI – Suspicious PE
JiangminTrojan/Agent.cizw
WebrootW32.Trojan.Gen
AviraTR/Crypt.XDR.Gen
Antiy-AVLTrojan/Win32.Agent
XcitiumTrojWare.Win32.TrojanDropper.Agent.~GBO@4nd4e
MicrosoftTrojan:Win32/Vindor!pz
ZoneAlarmTrojan.Win32.Agent.acw
GDataTrojan.Downloader.JJOM
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Agent.R6558
McAfeeAdClicker-FA.a
MAXmalware (ai score=100)
VBA32BScope.Trojan.Agent
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_DROPPER.CIA
TencentWin32.Trojan.Agent.Qsmw
YandexTrojan.GenAsa!eGM5v3AR1e0
IkarusTrojan.Win32.Agent
MaxSecureTrojan.Agent.acw
FortinetW32/Agent.240D!tr
AVGWin32:Susn-D [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Downloader.JJOM?

Trojan.Downloader.JJOM removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment