Malware

What is “Johnnie.20316”?

Malware Removal

The Johnnie.20316 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Johnnie.20316 virus can do?

  • Creates RWX memory
  • Drops a binary and executes it
  • Creates a copy of itself

How to determine Johnnie.20316?


File Info:

crc32: C88F0444
md5: fe348dd4b6ecc2e069e57c9cf4b7b175
name: FE348DD4B6ECC2E069E57C9CF4B7B175.mlw
sha1: 7b7c9297cfc8cb84edf3b4dc3929e36b8e0fee12
sha256: 6b06b124cc2c4de3310c65eb3c6da4f521543af1a3a0679c93e4c48b6c114d0b
sha512: 3bb228b475b13b72f09cd5f9f8c64691152e7883c9985cc57bd6ff976aad3c351f219fea1f45a555214062918769525cf8820f21a900a0ce03f764809389ff0f
ssdeep: 1536:49TWjdEuY28HLXPRvz0/Q54VZenqpMr6alIa3qm0Ddd7MtiX:0S5EuYnHLfR+C4V4qpba+Ab0ZP
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2015
Assembly Version: 1.0.0.0
InternalName: Application Tools Desktop.exe
FileVersion: 1.0.0.0
ProductName: Application Tools Desktop
ProductVersion: 1.0.0.0
FileDescription: Application Tools Desktop
OriginalFilename: Application Tools Desktop.exe

Johnnie.20316 also known as:

K7AntiVirusTrojan ( 0055e3981 )
LionicTrojan.Win32.FrauDrop.b!c
DrWebBackDoor.Bladabindi.1056
CynetMalicious (score: 99)
ALYacGen:Variant.Johnnie.20316
CylanceUnsafe
ZillyaDropper.FrauDrop.Win32.34258
SangforBackdoor.Win32.Bladabindi.8
CrowdStrikewin/malicious_confidence_70% (D)
K7GWTrojan ( 0055e3981 )
Cybereasonmalicious.4b6ecc
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.VEQ
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Dropper.Win32.FrauDrop.ajtcr
BitDefenderGen:Variant.Johnnie.20316
NANO-AntivirusTrojan.Win32.Drop.dudcfw
MicroWorld-eScanGen:Variant.Johnnie.20316
Ad-AwareGen:Variant.Johnnie.20316
SophosMal/Generic-S
ComodoMalware@#sxspg68ed50a
BitDefenderThetaGen:NN.ZemsilF.34266.gq0@aOqOShe
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.fe348dd4b6ecc2e0
EmsisoftGen:Variant.Johnnie.20316 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDropper.FrauDrop.adgi
WebrootW32.Trojan.Gen
AviraTR/Dropper.MSIL.Gen
eGambitUnsafe.AI_Score_57%
Antiy-AVLTrojan/Generic.ASMalwS.12B12E7
KingsoftWin32.Troj.FrauDrop.(kcloud)
SUPERAntiSpywareTrojan.Agent/Gen-Dropper
GDataGen:Variant.Johnnie.20316
McAfeeArtemis!FE348DD4B6EC
MAXmalware (ai score=82)
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/CI.A
TencentWin32.Trojan-dropper.Fraudrop.Eequ
YandexTrojan.DR.FrauDrop!7RYOu9PEoIU
IkarusTrojan.MSIL.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Kryptik.HSF!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Johnnie.20316?

Johnnie.20316 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment