Malware

Johnnie.261330 removal instruction

Malware Removal

The Johnnie.261330 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Johnnie.261330 virus can do?

  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Binary compilation timestomping detected

How to determine Johnnie.261330?


File Info:

name: 52E504F3533422E40E95.mlw
path: /opt/CAPEv2/storage/binaries/e9086247fff46657e485d72a13214d7d7f3396f8c78217f499aad674dfee7a10
crc32: EED71A85
md5: 52e504f3533422e40e955a66ab22b52b
sha1: 8434d53841a65b9be8615ec3366e36cf4c7c1cfd
sha256: e9086247fff46657e485d72a13214d7d7f3396f8c78217f499aad674dfee7a10
sha512: 9bb33c3d6a2b41e8781760300885815ab32c086749f302cd50ed82d40ad7bf55b0d4358da4de4701d2fc58544f1f31937d7856cda73bdcf2c1d3e8d49549b69f
ssdeep: 384:25uyeFbjKhXA5PmsxWU/hLmzHLWaN7hGw0JpLKLHoi9QhHbbr96:OsRNm/XGtWcH3r96
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T1BB824C467BE8863AFABE06B50D73D2205770D5D3D952DB0F1DC8609A0F233858E92EE5
sha3_384: ead72b05a09998a560b3a0fe3a5b5713f2759fb87ca11316d808f97f4f078443ee71e27822a01117020e8696e383d1e5
ep_bytes: 4d5a90000300000004000000ffff0000
timestamp: 2099-02-18 14:11:17

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: WindowsFormsApp1
FileVersion: 1.0.0.0
InternalName: WindowsFormsApp1.exe
LegalCopyright: Copyright © 2021
LegalTrademarks:
OriginalFilename: WindowsFormsApp1.exe
ProductName: WindowsFormsApp1
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Johnnie.261330 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Johnnie.261330
FireEyeGeneric.mg.52e504f3533422e4
K7AntiVirusTrojan ( 0051c6271 )
K7GWTrojan ( 0051c6271 )
Cybereasonmalicious.353342
SymantecTrojan.Gen.2
ESET-NOD32a variant of MSIL/Agent.BEW
APEXMalicious
KasperskyHEUR:Backdoor.MSIL.Revenge.gen
BitDefenderGen:Variant.Johnnie.261330
AvastWin64:BackdoorX-gen [Trj]
Ad-AwareGen:Variant.Johnnie.261330
DrWebBackDoor.SpyBotNET.19
TrendMicroTROJ_GEN.R014C0WL621
EmsisoftGen:Variant.Johnnie.261330 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Johnnie.261330
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ALYacGen:Variant.Johnnie.261330
MAXmalware (ai score=80)
TrendMicro-HouseCallTROJ_GEN.R014C0WL621
RisingBackdoor.Revetrat!1.C8D4 (CLASSIC)
IkarusTrojan.MSIL.Agent
eGambitUnsafe.AI_Score_99%
FortinetMSIL/Agent.BEW!tr
AVGWin64:BackdoorX-gen [Trj]
CrowdStrikewin/malicious_confidence_90% (W)
MaxSecureTrojan.Malware.300983.susgen

How to remove Johnnie.261330?

Johnnie.261330 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment