Win32.Jix is a backdoor Trojan with a built-in remote administration tool commonly referred to as Remote Access Technology or RAT. Apparently, this program is in and of itself a Windows PE EXE file and it is approximately 15 KB in size. It comes bundled with UPX.
Once this spyware has infected your system, it will copy itself in the Windows system directory and will use the following names: %Systemr%\upnphost.exe, %System%\pnphost.exe, %System%\winpnp.exe.
The backdoor component of the program will use TCP port 5533 which will then turn the user’s machine into an FTP server. It will then await commands from its hacker by connecting to IRC server 184.108.40.206
Remove at once.
It is possible to remove this pest manually. It requires purging all related files, folders and processes from the system. However, if manual removal leaves you feeling a bit skittish about the process, a program out there can remove all spyware and not just Win32.Jix. ZookaWare PC Cleaner is a reliable and safe anti-spyware application from makers, ZookaWare.