Malware

Should I remove “Johnnie.295169”?

Malware Removal

The Johnnie.295169 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Johnnie.295169 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • A process attempted to delay the analysis task by a long amount of time.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Johnnie.295169?


File Info:

crc32: 594305BC
md5: 1d7d87f0c36eb1ccc1d4d386763ce844
name: 1D7D87F0C36EB1CCC1D4D386763CE844.mlw
sha1: 6d721f3765720164e6948099415a1bf31c815b05
sha256: af01b8ece8f568f76bee77c812b47a4c46c7a969a76c3b69b3ffdc86d58654f7
sha512: 6c4d8dd0cab2297ffc9c32213023b3262a684b0475617dd399ae8d1c16389839af8267c5a9b8ba266acef6eb1eb0fb986d048e95f3e760340e375a20030633d4
ssdeep: 6144:XqMJop5K+0As4GDFh8J5mPkiztP4EY9YV0VXttVCw/m0NxRQvabuq8cch5FG7h8:6yop5K+0AHyF5tgEsY49mwu0Nfxy4LV
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Exercise like Corporation. All rights reserved. Quotientdollar
InternalName: Went Select
FileVersion: 6.5.3.181
CompanyName: Exercise like Corporation
ProductName: Exercise likexae Excitesystemxae
ProductVersion: 6.5.3.181
FileDescription: Exercise like Excitesystem
OriginalFilename: Sleep.dll
Translation: 0x0409 0x04b0

Johnnie.295169 also known as:

Elasticmalicious (high confidence)
McAfeeTrojan-FRGC!1D7D87F0C36E
CylanceUnsafe
AegisLabTrojan.Win32.Slepak.4!c
SangforMalware
BitDefenderGen:Variant.Johnnie.295169
K7GWTrojan ( 005741d01 )
K7AntiVirusTrojan ( 005741d01 )
ArcabitTrojan.Johnnie.D48101
SymantecTrojan Horse
APEXMalicious
CynetMalicious (score: 85)
KasperskyHEUR:Trojan.Win32.Slepak.gen
AlibabaTrojan:Win32/GenKryptik.e176bac8
MicroWorld-eScanGen:Variant.Johnnie.295169
RisingTrojan.Generic@ML.92 (RDML:K9gTpEdp/DuLfXxgCp+p8w)
Ad-AwareGen:Variant.Johnnie.295169
SophosMal/Generic-S
F-SecureTrojan.TR/AD.UrsnifDropper.iycze
TrendMicroTROJ_FRS.VSNW03L20
McAfee-GW-EditionTrojan-FRGC!1D7D87F0C36E
FireEyeGen:Variant.Johnnie.295169
EmsisoftGen:Variant.Johnnie.295169 (B)
AviraTR/AD.UrsnifDropper.iycze
MAXmalware (ai score=84)
MicrosoftTrojan:Win32/Ymacco.AAAF
ZoneAlarmHEUR:Trojan.Win32.Slepak.gen
GDataGen:Variant.Johnnie.295169
ALYacSpyware.Ursnif
MalwarebytesSpyware.Ursnif
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Kryptik.HHYK
TrendMicro-HouseCallTROJ_FRS.VSNW03L20
IkarusTrojan.Win32.Crypt
FortinetW32/Dridex.YZEY!tr
WebrootW32.Trojan.Gen
AVGFileRepMalware
Paloaltogeneric.ml
Qihoo-360Generic/Trojan.Dropper.fe2

How to remove Johnnie.295169?

Johnnie.295169 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment