Jatif.722

What is Jatif.722 infection?

In this short article you will certainly discover concerning the interpretation of Jatif.722 and also its unfavorable influence on your computer. Such ransomware are a kind of malware that is clarified by on the internet scams to require paying the ransom money by a sufferer.

In the majority of the situations, Jatif.722 virus will certainly advise its targets to initiate funds move for the function of reducing the effects of the amendments that the Trojan infection has presented to the victim’s tool.

Jatif.722 Summary

These alterations can be as adheres to:

  • Presents an Authenticode digital signature;
  • Network activity detected but not expressed in API logs;
  • Anomalous binary characteristics;
  • Ciphering the records located on the victim’s hard drive — so the victim can no longer use the information;
  • Preventing normal access to the victim’s workstation;

Related domains:

z.whorecord.xyzRansom.Wannacry
a.tomx.xyzRansom.Wannacry

Jatif.722

The most regular networks whereby Jatif.722 Ransomware Trojans are injected are:

  • By means of phishing emails;
  • As a consequence of customer ending up on a source that organizes a destructive software program;

As soon as the Trojan is efficiently injected, it will certainly either cipher the information on the target’s computer or stop the gadget from working in an appropriate manner – while also putting a ransom money note that discusses the need for the targets to effect the settlement for the function of decrypting the files or restoring the data system back to the preliminary problem. In a lot of instances, the ransom money note will turn up when the customer restarts the COMPUTER after the system has already been harmed.

Jatif.722 distribution networks.

In numerous corners of the globe, Jatif.722 expands by leaps and also bounds. Nevertheless, the ransom notes and methods of extorting the ransom quantity might vary depending upon specific local (regional) settings. The ransom notes and methods of obtaining the ransom quantity may vary depending on specific neighborhood (local) setups.

For instance:

    Faulty informs about unlicensed software application.

    In specific locations, the Trojans frequently wrongfully report having spotted some unlicensed applications allowed on the target’s tool. The alert after that demands the customer to pay the ransom.

    Faulty declarations concerning unlawful web content.

    In nations where software piracy is much less preferred, this technique is not as reliable for the cyber frauds. Conversely, the Jatif.722 popup alert might wrongly declare to be deriving from a law enforcement organization and will certainly report having situated child pornography or other illegal data on the gadget.

    Jatif.722 popup alert may incorrectly declare to be obtaining from a law enforcement institution and will report having located child pornography or other unlawful data on the gadget. The alert will likewise have a requirement for the customer to pay the ransom.

Technical details

File Info:

crc32: 108EC68Dmd5: 94eff1106e63e263b7aecd80750dd605name: 94EFF1106E63E263B7AECD80750DD605.mlwsha1: ba3bb2ad02684fbfa99816c810e8b646ca67a0d4sha256: dece8e916b920f08a3a8f240b42f09c8abf3ec54ef394cc2bd6a284bcf3a44f8sha512: 7513ae30124ef29b77fa49f9d5987970878373a0d7264ab42c249c5ed270f9e357ee0e0c5fffcd14dc47175e0a65c0b39d858d9b87b88dc97e78a33190fb9c95ssdeep: 6144:0r2R6xzZgxx3BEv2q2GBAtyrOfzmYrXPiqEMkGF53W10s:ewBtGBAgOfznXPi9KdIBtype: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright: Orange lime. All rights reserved.InternalName: Tools managerFileVersion: 2.3.1.4CompanyName: Orange limeComments: App managerProductName: Istall tools managerProductVersion: 2.3.1.4Translation: 0x0409 0x04b0

Jatif.722 also known as:

GridinSoftTrojan.Ransom.Gen
K7AntiVirusUnwanted-Program ( 00587b2b1 )
LionicTrojan.Win32.Tovkater.4!c
DrWebTrojan.InstallMonster.2380
CynetMalicious ()
ALYacGen:Variant.Jatif.722
CylanceUnsafe
ZillyaAdware.DLBoost.Win32.3337
SangforTrojan.Win32.Tovkater.EJ
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaTrojanDownloader:Win32/Tovkater.9770b231
K7GWUnwanted-Program ( 00587b2b1 )
Cybereasonmalicious.06e63e
CyrenW32/Tovkater.U.gen!Eldorado
SymantecRansom.Wannacry
ESET-NOD32multiple detections
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Dropper.Tovkater-6646735-0
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Jatif.722
NANO-AntivirusTrojan.Win32.Tovkater.eterxf
MicroWorld-eScanGen:Variant.Jatif.722
TencentWin32.Trojan-downloader.Tovkater.Hvjj
Ad-AwareGen:Variant.Jatif.722
SophosMal/Generic-S
ComodoMalware@#j3wuck81f9xd
BitDefenderThetaGen:NN.ZexaF.34170.hy0@auqYyUpi
VIPREAmonetize (fs)
TrendMicroTROJ_GEN.R002C0PIK21
McAfee-GW-EditionGenericR-KNQ!D6F6EB5892FC
FireEyeGeneric.mg.94eff1106e63e263
EmsisoftApplication.AdLoad (A)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1108483
eGambitUnsafe.AI_Score_83%
Antiy-AVLTrojan/Generic.ASMalwS.2222100
MicrosoftSoftwareBundler:Win32/DirectDownloader
GDataGen:Variant.Jatif.722
AhnLab-V3PUP/Win32.DLBoost.R210363
McAfeeArtemis!94EFF1106E63
MAXmalware (ai score=88)
VBA32Trojan.Wacatac
MalwarebytesPUP.Optional.BundleInstaller
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0PIK21
RisingTrojan.Generic@ML.100 (RDMK:4rbiXO9guHMAbVmlE2ut8Q)
YandexTrojan.DL.Tovkater!fmXObT/J1Dg
FortinetW32/Tovkater.EN!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Marcus Vance

Marcus Vance

Cybersecurity & Digital Privacy Researcher

Marcus Vance is a cybersecurity auditor and technology writer dedicated to educating the public about online safety, data privacy regulations, enterprise security, and emerging cyber threats.

Share this article
Twitter Facebook Pinterest