Trojan

About “Trojan.Win32.JTalye” infection

Malware Removal

The Trojan.Win32.JTalye is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.JTalye virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • CAPE detected the TWarBot malware family

How to determine Trojan.Win32.JTalye?


File Info:

name: F131AF737213F6F07CFF.mlw
path: /opt/CAPEv2/storage/binaries/80fbbffff35504f9953f9866dfa7d5db717df35993ddef1abdcf5e93033347db
crc32: C344E128
md5: f131af737213f6f07cff71dd5e72f24e
sha1: f5a3a6c19092527c717da59081115061bb28dacc
sha256: 80fbbffff35504f9953f9866dfa7d5db717df35993ddef1abdcf5e93033347db
sha512: b90f26ebccecfd04c8c9ad36eb4f0cc2d42a854c94537750034fd2ecd4d6ce46786233c28eee07d93c5e9019bb8c37bf7f31622241fd83e76d8861e5e218afd6
ssdeep: 1536:uaiqH1s+kCtrA2UMT0mTFibDKa1PRuLh:z1B31bdBob2QPC
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T162A3395FE581FB72CE2449B44D1A41BC6DAA3F31ED28D49EBF9C2F1E17B13920928055
sha3_384: 7023f884660353fbe2fe4018a4e8c0bf51398e525076da3542535d344a4280955bab045523e475ce83ce33ba86a5682c
ep_bytes: 89ccffff85c075088d45e8e8bdc7ffff
timestamp: 1992-06-19 16:06:43

Version Info:

0: [No Data]

Trojan.Win32.JTalye also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.JTalye.4!c
MicroWorld-eScanTrojan.GenericKD.68688980
FireEyeGeneric.mg.f131af737213f6f0
McAfeeArtemis!F131AF737213
MalwarebytesGeneric.Malware.AI.DDS
SangforSuspicious.Win32.Save.a
AlibabaTrojan:Win32/JTalye.bd63e6ca
CrowdStrikewin/malicious_confidence_100% (W)
BaiduWin32.Backdoor.Wabot.a
CyrenW32/Delf_Troj.DH.gen!Eldorado
SymantecW32.Wabot
Elasticmalicious (high confidence)
APEXMalicious
ClamAVWin.Trojan.Wabot-7053120-0
KasperskyHEUR:Trojan.Win32.JTalye.gen
BitDefenderTrojan.GenericKD.68688980
AvastWin32:Delf-VJY [Trj]
TACHYONTrojan/W32.JTalye.102400
EmsisoftTrojan.GenericKD.68688980 (B)
F-SecureTrojan.TR/Patched.Ren.Gen
VIPRETrojan.GenericKD.68688980
TrendMicroTROJ_GEN.R002C0OHD23
McAfee-GW-EditionBehavesLike.Win32.Generic.ct
Trapminemalicious.high.ml.score
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataWin32.Backdoor.Wabot.A
JiangminHeur:Trojan/Agent
AviraTR/Patched.Ren.Gen
Antiy-AVLTrojan[Backdoor]/Win32.Wabot
ZoneAlarmHEUR:Trojan.Win32.JTalye.gen
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
BitDefenderThetaGen:NN.ZexaF.36350.gqZ@aW7zoUe
ALYacTrojan.GenericKD.68688980
MAXmalware (ai score=85)
Cylanceunsafe
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R002C0OHD23
RisingWorm.Chilly!1.661C (CLASSIC)
IkarusTrojan.Win32.Delf
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/PossibleThreat
AVGWin32:Delf-VJY [Trj]
Cybereasonmalicious.190925
DeepInstinctMALICIOUS

How to remove Trojan.Win32.JTalye?

Trojan.Win32.JTalye removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment