Malware

Johnnie.185807 (B) removal guide

Malware Removal

The Johnnie.185807 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Johnnie.185807 (B) virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Johnnie.185807 (B)?


File Info:

crc32: 2E2BE446
md5: 5ed4b87c586c6fbbf96f64a3d42e0276
name: 5ED4B87C586C6FBBF96F64A3D42E0276.mlw
sha1: a9b120ebf524bb58f7b6e0b41c1808f900690319
sha256: 2e5458424d90e34a20f9e6677c95752cba92c2991f4d9cc35af7a8845f4c13ab
sha512: 6e6ca5d305c2939f44efa54a49ffdb7f48212b001ece153fa0d0ee697710d210c0beab2d768c65a95d6b6382b2d07ef3c4b84b8b41e54e0f238b1f4d46e8a7ba
ssdeep: 192:3biJ1hpDRqz/fxv1MzKOlxaNbr2/1Mhsv87hwsO:EtWB15KxaNb6G487a/
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 1.0.0.0
InternalName: ruby.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: diamond
ProductVersion: 1.0.0.0
FileDescription: diamond
OriginalFilename: ruby.exe

Johnnie.185807 (B) also known as:

K7AntiVirusTrojan ( 700000121 )
Elasticmalicious (high confidence)
DrWebTrojan.Hosts.46562
CynetMalicious (score: 99)
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
ALYacGen:Variant.Johnnie.185807
CylanceUnsafe
K7GWTrojan ( 700000121 )
Cybereasonmalicious.c586c6
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Filecoder.UH
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
BitDefenderGen:Variant.Johnnie.185807
MicroWorld-eScanGen:Variant.Johnnie.185807
TencentMalware.Win32.Gencirc.10b8fdc5
Ad-AwareGen:Variant.Johnnie.185807
SophosML/PE-A
BitDefenderThetaGen:NN.ZemsilF.34050.am1@aep5voi
TrendMicroTrojan.MSIL.TEIKA.SMTH
FireEyeGeneric.mg.5ed4b87c586c6fbb
EmsisoftGen:Variant.Johnnie.185807 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.MSIL.ovnx
AviraHEUR/AGEN.1131332
Antiy-AVLTrojan/Generic.ASMalwS.2C53BBB
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Johnnie.D2D5CF
GDataGen:Variant.Johnnie.185807
AhnLab-V3Malware/Win32.RL_Trojan.C3454215
MAXmalware (ai score=89)
VBA32TScope.Trojan.MSIL
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojan.MSIL.TEIKA.SMTH
YandexTrojan.Filecoder!wRa1hN7UxsA
IkarusTrojan-Ransom.FileCrypter
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Filecoder.UH!tr
AVGWin32:RansomX-gen [Ransom]

How to remove Johnnie.185807 (B)?

Johnnie.185807 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment