Malware

Johnnie.15163 information

Malware Removal

The Johnnie.15163 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Johnnie.15163 virus can do?

  • Presents an Authenticode digital signature
  • A process attempted to delay the analysis task.
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Queries information on disks, possibly for anti-virtualization

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Johnnie.15163?


File Info:

crc32: 001E9C49
md5: 90d2db9329ac2abe10d1f6013f8df5a0
name: launcher_386.exe
sha1: 2e744ea0f0503a45a6c353585baa0fc28f5f53c0
sha256: 6d9857e1b0490091d07e3f9db06b8a7a8eb8c91414fc1b9b263ac83611a58e2d
sha512: 6a47715e75ff72782f8ebcd67e7191353c5c87f8203acd7bf64dc458558c8fd37bf621ed4757080a23da872ec5d7497b5bf467876f2650dcf4ca06f20b04d62e
ssdeep: 24576:LLXkamhje+YkqOcBDMkBQGayYdLdAOlWo+H2gUhHH05JoQFuh9SUDMiRN:sha+YkOvIdAx0M5uhsUDM2N
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2015-2018
InternalName: x6e38x620f x5b89x88c5x7a0bx5e8f
FileVersion: 1.0.0.386
ProductName: x6e38x620f x5b89x88c5x7a0bx5e8f
ProductVersion: 1.0.0.386
FileDescription: x6e38x620f x5b89x88c5x7a0bx5e8f
OriginalFilename: game setup.exe
Translation: 0x0804 0x03a8

Johnnie.15163 also known as:

MicroWorld-eScanGen:Variant.Johnnie.15163
FireEyeGen:Variant.Johnnie.15163
McAfeeArtemis!90D2DB9329AC
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
K7AntiVirusAdware ( 004fb2431 )
BitDefenderGen:Variant.Johnnie.15163
K7GWAdware ( 004fb2431 )
Cybereasonmalicious.329ac2
Invinceaheuristic
APEXMalicious
AvastWin32:Adware-gen [Adw]
GDataGen:Variant.Johnnie.15163
Kasperskynot-a-virus:AdWare.Win32.Kuaiba.cdm
AlibabaAdWare:Win32/Kuaiba.2ac66036
NANO-AntivirusRiskware.Win32.Kuaiba.hdlhta
ViRobotAdware.Kuaiba.1819104
AegisLabAdware.Win32.Kuaiba.2!c
RisingPUA.GameBox!8.12B2 (TFE:dGZlOgUPMMlDfyQREA)
Endgamemalicious (high confidence)
EmsisoftGen:Variant.Johnnie.15163 (B)
ComodoApplicUnwnt@#q59zflnnbglx
F-SecureAdware.ADWARE/Kuaiba.xejhd
ZillyaAdware.Kuaiba.Win32.573
McAfee-GW-EditionArtemis
MaxSecureTrojan.Malware.73771975.susgen
SophosGeneric PUA CO (PUA)
CyrenW32/Adware.AQCV-4775
JiangminAdWare.Kuaiba.bs
AviraADWARE/Kuaiba.xejhd
MAXmalware (ai score=86)
Antiy-AVLGrayWare[AdWare]/Win32.Kuaiba
MicrosoftPUA:Win32/GameBox
ArcabitTrojan.Johnnie.D3B3B
ZoneAlarmnot-a-virus:AdWare.Win32.Kuaiba.cdm
ALYacGen:Variant.Johnnie.15163
VBA32BScope.Trojan.Downloader
MalwarebytesAdware.Kuaiba
PandaTrj/CI.A
ESET-NOD32a variant of Win32/Adware.Kuaiba.G
TrendMicro-HouseCallTROJ_GEN.R01FH0CLG19
TencentMalware.Win32.Gencirc.10b8fbeb
YandexPUA.Kuaiba!
SentinelOneDFI – Suspicious PE
eGambitUnsafe.AI_Score_93%
FortinetRiskware/Kuaiba
Ad-AwareGen:Variant.Johnnie.15163
AVGWin32:Adware-gen [Adw]

How to remove Johnnie.15163?

Johnnie.15163 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment