Malware

Win64/JackServn.I removal instruction

Malware Removal

The Win64/JackServn.I is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win64/JackServn.I virus can do?

  • Unconventionial language used in binary resources: Korean
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Win64/JackServn.I?


File Info:

name: 190B08539E9C1C0F03BF.mlw
path: /opt/CAPEv2/storage/binaries/ec1922bd9e97acce48344ba10b6edd6f24ed407f08115a22e9845305c8c0df84
crc32: 8467B672
md5: 190b08539e9c1c0f03bf75f3ff4b4bc1
sha1: f9532030751c231e98a5eb1defc688ecafa880c7
sha256: ec1922bd9e97acce48344ba10b6edd6f24ed407f08115a22e9845305c8c0df84
sha512: 80114dd7a75e3369eeb843881e9c201b5eeb5721f64c4216626d4bbf44619f9fbb4d4f8f7d72811a703fc35fd434b7601c4a0036048c7c376e1ed58d3e83d25a
ssdeep: 98304:RxZqXMa7/AYs3Hf3b/Qdgthx7PXQxQCEPKw+DCgw57KSTZXvCjwh:R2ca7/tsv3EOthYOaCbZvHh
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T1C1360112B7A0C0B6D4B34136CEA6866AE775B8204B7093CB63D41B6E5F336D1AD39713
sha3_384: 23f53d6f8d21c835d2ed8c320052f67766176fbb8193cdb826fdb2135755cb05fd56667dfccbb29127a7120c4eab9962
ep_bytes: 4883ec28e82bbc00004883c428e912fe
timestamp: 2021-11-19 06:45:14

Version Info:

0: [No Data]

Win64/JackServn.I also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Mikey.127448
FireEyeGeneric.mg.190b08539e9c1c0f
McAfeeGenericRXAA-AA!190B08539E9C
Cybereasonmalicious.0751c2
ESET-NOD32a variant of Win64/JackServn.I
BitDefenderGen:Variant.Mikey.127448
NANO-AntivirusTrojan.Win32.JackServn.isojtt
AvastWin32:Trojan-gen
TencentMalware.Win32.Gencirc.10cf2e63
Ad-AwareGen:Variant.Mikey.127448
EmsisoftGen:Variant.Mikey.127448 (B)
ZillyaTrojan.KrServ.Win32.248
McAfee-GW-EditionBehavesLike.Win64.Dropper.rc
SophosGeneric ML PUA (PUA)
IkarusTrojan.Win32.Jackservn
GDataGen:Variant.Mikey.127448
JiangminTrojan.KrServ.an
AviraTR/JackServn.nwhir
Antiy-AVLTrojan/Win64.JackServn
ArcabitTrojan.Mikey.D1F1D8
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.C4830693
ALYacGen:Variant.Mikey.127448
MAXmalware (ai score=87)
MalwarebytesMalware.AI.3466817026
YandexTrojan.JackServn!HaqZpU9I2PU
MaxSecureTrojan.Malware.115878666.susgen
FortinetW64/JackServn.I!tr
AVGWin32:Trojan-gen

How to remove Win64/JackServn.I?

Win64/JackServn.I removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment