Home Possibly Unwanted Program JZip

JZip

Posted: November 3, 2015

Threat Metric

Ranking: 4,495
Threat Level: 1/10
Infected PCs: 40,397
First Seen: November 3, 2015
Last Seen: October 16, 2023
OS(es) Affected: Windows


JZip is a compression utility and archive manager, which might be promoted on various websites as a great alternative to popular software such as WinRar, 7Zip and others. However, direct download is not the most popular method to get JZip on your computer certainly, and it appears that many users ended up with JZip on their PCs even though they do not remember installing it. This usually happens via software bundles that users might come across when dealing with freeware and shareware applications. In general, software bundles are not harmful, but they might sometimes attempt to promote 3rd-party software such as JZip. It is not uncommon for low-quality bundles to utilize misleading instructions and basic tricks to increase the probability that the user will end up authorizing the installation of software such as Jzip unknowingly.

If you have JZip on your PC, then you might have already noticed that it has been set as the default program used to open various archive types. The good news is that this change is not unsafe and, in fact, JZip is likely to work reliably. However, it is understandable why most users would rather use a trustworthy software suite instead of a dubious tool like JZip.

If you have found JZip on your PC and you are not happy with its presence, then we advise you to take care of its immediate removal. Since this utility is not harmful, you should be able to uninstall it via the Windows Control Panel successfully. However, if this does not function, then you can also take care of the intruder by using a suitable PC security scanner.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



D:\Misc Drive\Imp Tools\jZip\jZip.exe File name: jZip.exe
Size: 3.77 MB (3777472 bytes)
MD5: f7940a4ceb97dea8946df0d6cfea5ea4
Detection count: 302
File type: Executable File
Mime Type: unknown/exe
Path: D:\Misc Drive\Imp Tools\jZip\jZip.exe
Group: Malware file
Last Updated: July 22, 2023
%SYSTEMDRIVE%\AdwCleaner\Quarantine\C\Program Files (x86)\jZip\jZip.exe.vir File name: jZip.exe.vir
Size: 3.77 MB (3777472 bytes)
MD5: 58324c899be31006cff631030477b71b
Detection count: 166
Mime Type: unknown/vir
Path: %SYSTEMDRIVE%\AdwCleaner\Quarantine\C\Program Files (x86)\jZip\jZip.exe.vir
Group: Malware file
Last Updated: August 4, 2023
C:\Program Files (x86)\jZip\jZip.exe File name: jZip.exe
Size: 2.78 MB (2782656 bytes)
MD5: 3306c2483ed82c149a4d5c465c622571
Detection count: 61
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files (x86)\jZip\jZip.exe
Group: Malware file
Last Updated: April 29, 2021
%USERPROFILE%\Downloads\jzip.exe File name: jzip.exe
Size: 781.8 KB (781808 bytes)
MD5: 87ce7b967bbcfcb619de3ead4856f30e
Detection count: 60
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Downloads
Group: Malware file
Last Updated: April 14, 2016
%USERPROFILE%\Desktop\JZip.exe File name: JZip.exe
Size: 1.08 MB (1080368 bytes)
MD5: 6bfaa96a02c392f782a1b2835a85e0c2
Detection count: 56
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Desktop
Group: Malware file
Last Updated: April 14, 2016
%TEMP%\JZIP.exe File name: JZIP.exe
Size: 1.11 MB (1116252 bytes)
MD5: fd80302ac55f4989637c3177093ccf78
Detection count: 43
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: April 14, 2016
%PROGRAMFILES(x86)%\jZip\jZip.exe File name: jZip.exe
Size: 2.31 MB (2315712 bytes)
MD5: 89717d787bf3a5d5529d81c518011388
Detection count: 40
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\jZip
Group: Malware file
Last Updated: March 25, 2020
%PROGRAMFILES(x86)%\JZIP\JZIP\JZIP.exe File name: JZIP.exe
Size: 1.69 MB (1691136 bytes)
MD5: 28e04f0673ed9dfe04dee9b8d9dc9a5b
Detection count: 37
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\JZIP\JZIP
Group: Malware file
Last Updated: February 6, 2019
%TEMP%\JZIP.exe File name: JZIP.exe
Size: 1.11 MB (1116816 bytes)
MD5: c5a22f7c2ce73049bb5154ec5ce6563c
Detection count: 36
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: April 14, 2016
%PROGRAMFILES%\JZIP\JZIP\JZIP.exe File name: JZIP.exe
Size: 1.69 MB (1692672 bytes)
MD5: 94b200065926f35ae29acb60c0b8d8a0
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\JZIP\JZIP
Group: Malware file
Last Updated: April 14, 2016
%ALLUSERSPROFILE%\{edcbac94-0c47-1db2-edcb-bac940c4b250}\jZip.exe File name: jZip.exe
Size: 838.85 KB (838856 bytes)
MD5: 5b8213b29caa11e985add2d3670325cd
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\{edcbac94-0c47-1db2-edcb-bac940c4b250}
Group: Malware file
Last Updated: April 14, 2016
C:\COMPUTER TOOLS\AdwCleaner\Quarantine\C\Program Files (x86)\jZip\JZIP\JZIP.exe.vir File name: JZIP.exe.vir
Size: 1.69 MB (1692672 bytes)
MD5: 57b7379cc7397d0a89362b420d88ef59
Detection count: 26
Mime Type: unknown/vir
Path: C:\COMPUTER TOOLS\AdwCleaner\Quarantine\C\Program Files (x86)\jZip\JZIP\JZIP.exe.vir
Group: Malware file
Last Updated: February 12, 2022
%PROGRAMFILES(x86)%\JZIP\JZIP\JZIP.exe File name: JZIP.exe
Size: 1.69 MB (1692672 bytes)
MD5: b94f50351c203c18cb8e317a5cc2701e
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\JZIP\JZIP
Group: Malware file
Last Updated: April 14, 2016
%PROGRAMFILES(x86)%\jZip\jZip.exe File name: jZip.exe
Size: 3.77 MB (3777472 bytes)
MD5: 3674741d486047fd2b0ddef01dbd469e
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\jZip
Group: Malware file
Last Updated: September 29, 2020
%PROGRAMFILES%\jZip\jZip.exe File name: jZip.exe
Size: 3.77 MB (3777472 bytes)
MD5: a3ab55316119b0aa6c22b22caea6927a
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\jZip
Group: Malware file
Last Updated: January 4, 2020
%PROGRAMFILES%\jZip\jZip.exe File name: jZip.exe
Size: 2.3 MB (2307520 bytes)
MD5: 0d00430dccaa57957e6947647dac12cf
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\jZip
Group: Malware file
Last Updated: December 3, 2018
%PROGRAMFILES%\jZip\jZip.exe File name: jZip.exe
Size: 3.76 MB (3767655 bytes)
MD5: 49782ab90419b1455ac33fb34370dc89
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\jZip
Group: Malware file
Last Updated: April 14, 2016
%TEMP%\JZIP.exe File name: JZIP.exe
Size: 1.11 MB (1115706 bytes)
MD5: 1a151e39841c0d531f84529e62007813
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: April 14, 2016
%ALLUSERSPROFILE%\{84d6e05a-2ea5-ddfe-84d6-6e05a2ea8168}\jzip.exe File name: jzip.exe
Size: 1.31 MB (1310208 bytes)
MD5: 629290fa6b607f7397f4a89ba008be63
Detection count: 4
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\{84d6e05a-2ea5-ddfe-84d6-6e05a2ea8168}
Group: Malware file
Last Updated: April 14, 2016

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{3ED98568-A949-49CB-8ED0-3A703F6D4166}{49C042E8-2509-41D4-A5C4-D06BA2E0E093}{672B1330-7E4A-4D61-BE04-E2A132F04E1E}{7523EAC7-936A-4636-B77B-FEFE20D2239B}{7B286609-DA97-47E1-AC6B-33B8B4732C95}{9175E343-1C41-4490-B178-14F36504F07E}{94047607-3841-4CE6-AE4D-14FF23AF9458}{9684C656-95A2-497D-9C8D-AD98DD1B48D0}{C2FCC408-5801-4647-AA1D-A24D5FD6DB87}{D5F850C7-FF97-4309-890D-3302499C3899}{E677C7AD-2B66-4539-AA29-3771A1CFEDA9}File name without pathJZIP.lnkwww.jzip[1].xmlHKEY..\..\..\..{RegistryKeys}SOFTWARE\Bandoo Media Inc\jZip.exeSOFTWARE\Classes\*\shellex\ContextMenuHandlers\JZContextMenuExtSOFTWARE\Classes\*\shellex\ContextMenuHandlers\jZipSOFTWARE\Classes\*\shellex\ContextMenuHandlers\JZipShlExtSOFTWARE\Classes\*\shellex\PropertySheetHandlers\{7523EAC7-936A-4636-B77B-FEFE20D2239B}SOFTWARE\Classes\.zip\jZip.fileSOFTWARE\Classes\AppID\jZipShell.DLLSOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\JZipShlExtSOFTWARE\Classes\Directory\shellex\DragDropHandlers\JZHardLinkShlExtSOFTWARE\Classes\Drive\shellex\ContextMenuHandlers\JZipShlExtSOFTWARE\Classes\Drive\shellex\DragDropHandlers\JZHardLinkShlExtSOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\jZipSOFTWARE\Classes\Folder\ShellEx\DragDropHandlers\JZHardLinkShlExtSOFTWARE\Classes\jZip.exeSOFTWARE\Classes\jZip.fileSOFTWARE\Classes\jZipShell.jZipShellExtSOFTWARE\Classes\Wow6432Node\AppID\jZipShell.DLLSoftware\imeshjzipmusictoolbarSOFTWARE\JZIPSoftware\Microsoft\Internet Explorer\DOMStorage\jzip.comSoftware\Microsoft\Internet Explorer\DOMStorage\www.jzip.comSOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3614D305-2DBB-4991-9297-750DD60FFC73}SOFTWARE\Microsoft\Internet Explorer\LowRegistry\DOMStorage\jzip.comSOFTWARE\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.jzip.comSOFTWARE\Microsoft\Windows\CurrentVersion\AppPath\jZip.exeSOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\JzShlobjSOFTWARE\RegisteredApplications\jZipSOFTWARE\RegisteredApplications\jZip.exeSOFTWARE\Wow6432Node\Classes\AppID\jZipShell.DLLSOFTWARE\Wow6432Node\JZIPSOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3614D305-2DBB-4991-9297-750DD60FFC73}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\AppPath\jZip.exeSOFTWARE\Wow6432Node\RegisteredApplications\jZipSOFTWARE\WOW6432Node\RegisteredApplications\jZip.exeHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}jZip

Additional Information

The following directories were created:
%LOCALAPPDATA%\imeshjzipmusictoolbar%LOCALAPPDATA%\jZip%PROGRAMFILES%\jZip%PROGRAMFILES(x86)%\SystemManager\Systemmgr%PROGRAMFILES(x86)%\jZip%Temp%\jZip%USERPROFILE%\AppData\LocalLow\imeshjzipmusictoolbar%USERPROFILE%\Application Data\imeshjzipmusictoolbar%UserProfile%\Local Settings\Application Data\imeshjzipmusictoolbar%UserProfile%\Local Settings\Application Data\jZip

Related Posts

Loading...