Malware

Johnnie.312019 removal guide

Malware Removal

The Johnnie.312019 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Johnnie.312019 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Johnnie.312019?


File Info:

name: 153CE866F12B4FE8835A.mlw
path: /opt/CAPEv2/storage/binaries/24a8eeb551b6e932e7fe04893dbaca977399f2843257d774a01d794161405940
crc32: A8FDC5A8
md5: 153ce866f12b4fe8835a157e78c5fb98
sha1: a8ec6d703c81a53d964b907d3b27f172a53abda2
sha256: 24a8eeb551b6e932e7fe04893dbaca977399f2843257d774a01d794161405940
sha512: 98d60062d31e477c063e151120be62596e2069ebd57f7b3018f117eb4bf32bde4ba0d0d663bc8c15eaa1851f566f699ded437c37c88805149ed428e137b5999b
ssdeep: 384:sYIZmGN8RlSmlXfUV5Czt7dYEmUNQOtxff9vwEG9/XwJwq6uJfq2GSLwq3eW5yr4:sYIZmG2RFqUpNvQmC2GzI6YcoP
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19592192173D79239C93A0B37187A12426776E74A6967CA9F748C211EEFB374743633A0
sha3_384: e04d3e19829e9a45f2b41cc7ae87c43e689fc5b062c75961be3c4d0e0dea873f99aaedfb937cc6e95ab7bc57e63a1088
ep_bytes: ff250020400000000000000000000000
timestamp: 2083-12-27 13:49:52

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: Windows Defender
FileVersion: 1.0.0.0
InternalName: Windows Defender.exe
LegalCopyright: Copyright © 2021
LegalTrademarks:
OriginalFilename: Windows Defender.exe
ProductName: Windows Defender
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Johnnie.312019 also known as:

MicroWorld-eScanGen:Variant.Johnnie.312019
FireEyeGen:Variant.Johnnie.312019
ALYacGen:Variant.Johnnie.312019
Cybereasonmalicious.6f12b4
BitDefenderThetaGen:NN.ZemsilF.34062.bm0@aC!WP2p
ESET-NOD32a variant of MSIL/Agent.UZR
APEXMalicious
Paloaltogeneric.ml
BitDefenderGen:Variant.Johnnie.312019
AvastWin32:Malware-gen
Ad-AwareGen:Variant.Johnnie.312019
McAfee-GW-EditionArtemis!Trojan
EmsisoftGen:Variant.Johnnie.312019 (B)
GDataGen:Variant.Johnnie.312019
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
McAfeeGenericRXRA-BZ!153CE866F12B
MAXmalware (ai score=81)
MalwarebytesTrojan.Agent
TrendMicro-HouseCallTROJ_GEN.R002H09L421
SentinelOneStatic AI – Malicious PE
FortinetMalicious_Behavior.SB
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_80% (W)

How to remove Johnnie.312019?

Johnnie.312019 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment