Malware

Johnnie.297594 malicious file

Malware Removal

The Johnnie.297594 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Johnnie.297594 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs

How to determine Johnnie.297594?


File Info:

crc32: CC26C441
md5: 3c72bce52bdc984795ad8970ea9b451b
name: 3C72BCE52BDC984795AD8970EA9B451B.mlw
sha1: 708f02368cd5599b5e7d004159be88a99c3f3b12
sha256: e701400c16f68cd770c21a9a8df8785dda0f1e5658d9fa1f3e5b1ac778d8e6bc
sha512: 02e922a4441bf1c8410f1e062aecfde458faceacdd441491a9ed2721327159987b10e20e4365b80ced80612f4d8377a4d6ab79fd5913d2806d9b9cc26859f593
ssdeep: 6144:8gjl3eTjMcHHohaxJ01jxlxe2Ls6nKwwWnCVrjmxMXTpGb:3jZlcnk801jPx94sKwwWnmmxMD4b
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Sharedrink Corporation. All rights reserved
InternalName: Allow Home
FileVersion: 3.0.6.150
CompanyName: Sharedrink Corporation
ProductName: Sharedrinkxae Moveindustryxae
ProductVersion: 3.0.6.150
FileDescription: Sharedrink Moveindustry
OriginalFilename: During.dll
Translation: 0x0409 0x04b0

Johnnie.297594 also known as:

BkavW32.AIDetectVM.malware1
DrWebTrojan.Siggen11.54992
MicroWorld-eScanGen:Variant.Johnnie.297594
FireEyeGen:Variant.Johnnie.297594
McAfeeArtemis!3C72BCE52BDC
AegisLabTrojan.Win32.Cridex.7!c
SangforMalware
BitDefenderGen:Variant.Johnnie.297594
K7GWTrojan ( 0057494a1 )
K7AntiVirusTrojan ( 0057494a1 )
CyrenW32/Trojan.SQUQ-6785
SymantecRansom.Cry
APEXMalicious
AvastWin32:Trojan-gen
KasperskyHEUR:Trojan-Banker.Win32.Cridex.gen
AlibabaTrojanBanker:Win32/Cridex.a3adae17
RisingTrojan.GenKryptik!8.AA55 (TFE:5:2U5pKwXEgxG)
Ad-AwareGen:Variant.Johnnie.297594
EmsisoftGen:Variant.Johnnie.297594 (B)
F-SecureTrojan.TR/Banker.Cridex.brbym
McAfee-GW-EditionArtemis!Trojan
SophosMal/Generic-S
JiangminTrojan.Banker.Cridex.amj
AviraTR/Banker.Cridex.brbym
MAXmalware (ai score=81)
KingsoftWin32.Troj.Banker.(kcloud)
MicrosoftTrojan:Win32/Ymacco.AAE7
GridinsoftTrojan.Win32.Gen.oa
ArcabitTrojan.Johnnie.D48A7A
ZoneAlarmHEUR:Trojan-Banker.Win32.Cridex.gen
GDataGen:Variant.Johnnie.297594
CynetMalicious (score: 100)
ALYacTrojan.IcedID.gen
PandaTrj/GdSda.A
ESET-NOD32a variant of Generik.BCNHWXR
IkarusTrojan.SuspectCRC
FortinetW32/Generik.BCNHWXR!tr
WebrootW32.Malware.Gen
AVGWin32:Trojan-gen
Qihoo-360Trojan.Generic

How to remove Johnnie.297594?

Johnnie.297594 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment