Trojan

Trojan.Win32.Wecod.jdpm (file analysis)

Malware Removal

The Trojan.Win32.Wecod.jdpm is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Wecod.jdpm virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan.Win32.Wecod.jdpm?


File Info:

name: 8BC1949E3719F03020CD.mlw
path: /opt/CAPEv2/storage/binaries/c8fb5e82701a6c504ae4817985eaf09c5fadb27f2b16f1ed5288d879ad15f134
crc32: 979DBEDC
md5: 8bc1949e3719f03020cdff53873d9f8e
sha1: 2926767f1da063224d3f24821fc19e93c9063a61
sha256: c8fb5e82701a6c504ae4817985eaf09c5fadb27f2b16f1ed5288d879ad15f134
sha512: ea20ce01ed029388f0d385bac2eb59cbb42d0ae9feb97b0c43b2788167b07cb2b09a5b1ce83b8d701e00107f5664d7f398eb893cdd47b37774150de1185923d8
ssdeep: 3072:jRz2oTpSCQrtIxK9sc+g0EYUMLAa0KkCnbVJ2j459Epj:d2ow7riK95+P9LAubVJlEpj
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T149B4271076508072E3590771590AF6E04AA9AE3D16E9E18FF27C7E3A6E321D35B3724F
sha3_384: 647f3aec0088bf4e875c4184c378f43064cfb78ca75b830778e958e7b029b2de365ff7cf11d36618bdd3b55e603a7c33
ep_bytes: fe5e5f75085e5f5de9643f0000f7c703
timestamp: 2013-08-01 06:47:19

Version Info:

0: [No Data]

Trojan.Win32.Wecod.jdpm also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGen:Variant.Graftor.755697
Cylanceunsafe
ZillyaTrojan.Wecod.Win32.14871
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005a3fb91 )
K7GWTrojan ( 005a3fb91 )
Cybereasonmalicious.e3719f
BaiduWin32.Trojan.Urelas.d
CyrenW32/Agent.FWJ.gen!Eldorado
ESET-NOD32a variant of Win32/Agent_AGen.AUL
APEXMalicious
ClamAVWin.Malware.Urelas-9859364-0
KasperskyTrojan.Win32.Wecod.jdpm
BitDefenderGen:Variant.Graftor.755697
MicroWorld-eScanGen:Variant.Graftor.755697
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.CardSpy.16000130
EmsisoftGen:Variant.Graftor.755697 (B)
VIPREGen:Variant.Graftor.755697
McAfee-GW-EditionBehavesLike.Win32.Generic.hz
SophosGeneric ML PUA (PUA)
GDataWin32.Trojan.PSE.13IJRMU
Antiy-AVLTrojan/Win32.Wecod
XcitiumTrojWare.Win32.Urelas.SEE@5443e3
ArcabitTrojan.Graftor.DB87F1
ZoneAlarmTrojan.Win32.Wecod.jdpm
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GoogleDetected
AhnLab-V3Malware/Win.Generic.C5403121
McAfeeGenericRXVS-OG!8BC1949E3719
MAXmalware (ai score=85)
MalwarebytesMalware.AI.1963903536
RisingTrojan.Generic@AI.96 (RDML:hVzwOgvZCwGlHIpkzkXeTw)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CardSpy.PRKJ!tr
BitDefenderThetaGen:NN.ZexaF.36164.GuZ@ayctWhk
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_90% (D)

How to remove Trojan.Win32.Wecod.jdpm?

Trojan.Win32.Wecod.jdpm removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment