Malware

What is “Johnnie.311463 (B)”?

Malware Removal

The Johnnie.311463 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Johnnie.311463 (B) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Anomalous binary characteristics

How to determine Johnnie.311463 (B)?


File Info:

crc32: 6FD0F26B
md5: d256891b5d30cad15c77ef33b0aae15d
name: D256891B5D30CAD15C77EF33B0AAE15D.mlw
sha1: 5a1093e707ca04d84673576c020d1e24d4d09a24
sha256: c68eae2a2fb14e31a3099eee2c2f7d880653a7ed87ede88c638541854e01d3c2
sha512: 7d848a6c2fe526b9737dc8e6fbbc9f98011b6e20fc37145166a0b7b38bae48b6a7d9fd24a79c28bd9957e35b4d677cda1d0c7ba394461418fb7f48136f06fab6
ssdeep: 12288:5JZJpZFS02V46A9jmP/uhu/yMS08CkntxYRo:5JZ7ZFiufmP/UDMS08Ckn3V
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: 2010
InternalName: 6
FileVersion: 1.00
CompanyName: rajesh
LegalTrademarks: NEPAL ....RAJESH SHRESTHA
Comments: THIS SOFTWARE IS MADE FOR KIDS
ProductName: CARD PUZZLE BY RAJESH SHRESTHA
ProductVersion: 1.00
FileDescription: CARD PUZZLE
OriginalFilename: 6.exe

Johnnie.311463 (B) also known as:

BkavW32.AIDetectGBM.malware.01
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Johnnie.311463
FireEyeGeneric.mg.d256891b5d30cad1
McAfeeArtemis!D256891B5D30
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusSpyware ( 0000d4291 )
Cybereasonmalicious.b5d30c
CyrenW32/Trojan.ZJJE-0213
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:DropperX-gen [Drp]
KasperskyTrojan.Win32.Bingoml.bhky
BitDefenderGen:Variant.Johnnie.311463
Ad-AwareGen:Variant.Johnnie.311463
EmsisoftGen:Variant.Johnnie.311463 (B)
F-SecureTrojan.TR/AD.KutakiStealer.eomar
DrWebTrojan.MulDrop16.11011
TrendMicroTSPY_VBKEYLOG.SM
McAfee-GW-EditionBehavesLike.Win32.BadFile.hh
SophosMal/Generic-S
IkarusTrojan-Spy.Agent
eGambitUnsafe.AI_Score_76%
AviraTR/AD.KutakiStealer.eomar
MAXmalware (ai score=83)
KingsoftWin32.Troj.Bingoml.bh.(kcloud)
MicrosoftTrojan:Win32/Tnega!ml
ArcabitTrojan.Johnnie.D4C0A7
ZoneAlarmTrojan.Win32.Bingoml.bhky
GDataGen:Variant.Johnnie.311463
CynetMalicious (score: 100)
Acronissuspicious
BitDefenderThetaGen:NN.ZevbaF.34574.Hm0@aqV4WIni
ALYacGen:Variant.Graftor.597203
MalwarebytesTrojan.Injector
ESET-NOD32a variant of Win32/Spy.KeyLogger.NJK
TrendMicro-HouseCallTSPY_VBKEYLOG.SM
RisingSpyware.KeyLogger!1.D278 (CLASSIC)
SentinelOneStatic AI – Malicious PE
FortinetW32/KeyLogger.NJK!tr
AVGWin32:DropperX-gen [Drp]
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360HEUR/QVM03.0.7A3B.Malware.Gen

How to remove Johnnie.311463 (B)?

Johnnie.311463 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment