Malware

How to remove “Johnnie.221121”?

Malware Removal

The Johnnie.221121 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Johnnie.221121 virus can do?

  • Creates RWX memory
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Johnnie.221121?


File Info:

crc32: 4A73AC08
md5: 4731b90db56fc5dd654d59deca1009e6
name: Xenos.exe
sha1: 7c486d696813b1e0102f2feb300e6c6a7610287c
sha256: def1c2f12307d598e42506a55f1a06ed5e652af0d260aac9572469429f10d04d
sha512: 5d089c44cf073c438d68d3c48172647b8bf1b36886ab93fed3f2f41d2b5454ac14092653d4d70c5ef8076c1f88e1aab9c5bc732097f12e3ade32ab6ea258d6a0
ssdeep: 24576:F6vLpf9LJiOm0xg2VkVtw099I98mzGokH/Ngwpsu+VfSVgPCS3tMrMyj3F9hIF1:afJWVD99U8okH/NSVRSVE3tMx3FE1S0
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2017
InternalName: Xenos.exe
FileVersion: 2.3.2.0
ProductName: Xenos
ProductVersion: 2.3.2.0
FileDescription: PE injector
OriginalFilename: Xenos.exe
Translation: 0x0400 0x04b0

Johnnie.221121 also known as:

MicroWorld-eScanGen:Variant.Johnnie.221121
CAT-QuickHealTrojan.IGENERIC
McAfeeGenericRXGH-WS!4731B90DB56F
MalwarebytesSpyware.PasswordStealer
ZillyaTrojan.Kryptik.Win32.1520295
AegisLabTrojan.Win32.Generic.4!c
SangforMalware
K7AntiVirusUnwanted-Program ( 0052a82c1 )
BitDefenderGen:Variant.Johnnie.221121
K7GWTrojan ( 005208861 )
ArcabitTrojan.Johnnie.D35FC1
Invinceaheuristic
BitDefenderThetaGen:NN.ZexaF.34108.hr0@aCfHGWkO
CyrenW64/Application.HZLR-6820
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GAMH
APEXMalicious
Paloaltogeneric.ml
AlibabaTrojan:Win32/Kryptik.04c719bf
SUPERAntiSpywareTrojan.Agent/GenericKD
TencentMalware.Win32.Gencirc.10b9c03c
Ad-AwareTrojan.GenericKD.42839085
EmsisoftGen:Variant.Johnnie.221121 (B)
ComodoMalware@#18grhao8k00hu
F-SecureTrojan.TR/Crypt.Agent.cznvn
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericRXGH-WS!4731B90DB56F
FortinetW32/Kryptik.GAMH!tr
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.4731b90db56fc5dd
SophosMal/Generic-S
WebrootW32.Trojan.Gen
AviraTR/Crypt.Agent.cznvn
Antiy-AVLTrojan/Win64.Detrahere
Endgamemalicious (high confidence)
MicrosoftTrojan:Win32/Tiggre!plock
VBA32BScope.Trojan.Wacatac
ALYacTrojan.GenericKD.42839085
CylanceUnsafe
PandaTrj/CI.A
RisingTrojan.Kryptik!8.8 (CLOUD)
YandexTrojan.NtRootKit!
IkarusTrojan.Detrahere
eGambitUnsafe.AI_Score_99%
GDataTrojan.GenericKD.42839085 (2x)
MaxSecureTrojan.Malware.73703108.susgen
AVGFileRepMalware [PUP]
AvastFileRepMalware [PUP]
CrowdStrikewin/malicious_confidence_80% (W)
Qihoo-360Win32/Trojan.e3b

How to remove Johnnie.221121?

Johnnie.221121 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment