Malware

Johnnie.344192 removal

Malware Removal

The Johnnie.344192 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Johnnie.344192 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Possible date expiration check, exits too soon after checking local time
  • Authenticode signature is invalid

How to determine Johnnie.344192?


File Info:

name: 3398D2B7BACB718171E6.mlw
path: /opt/CAPEv2/storage/binaries/22da60951f23fce7475155f0cadd988be4b0cd5cef28265dfa6a3589eedcbf7f
crc32: 2062445E
md5: 3398d2b7bacb718171e691ec8d855d7c
sha1: 7f322a1257f50a431eda8a69849ad57cbe004ad3
sha256: 22da60951f23fce7475155f0cadd988be4b0cd5cef28265dfa6a3589eedcbf7f
sha512: 0c3915380dafd38430f6275a90d6d4d3cc460a4621007747b8fefacf547ab54f7a59d36e40a7fce6dab43a0b6ba80422f593e3a8abdbb9281db587253fc8dd07
ssdeep: 6144:KyuwDhbUGBnRO8dVMvK3+lDk1rGjhnyvqEXLvosq4kzrz/3YfWxE1AdQvJ51QFZe:Ky1wGBR3yvK3+lDk1rG2qEXLvosZkHTa
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A1846D62F981D037E9E20131AAB8CF735D3DA935572851D3F3D408B86A740E2B63979B
sha3_384: abbc0ebd87db208ff1b3c46940bf32e639413bd11a72268c7719a7f715f5a7e7a293bab53145afb510fb51dff13be105
ep_bytes: e85f660000e97ffeffff3b0d30b04500
timestamp: 2018-09-26 10:36:02

Version Info:

0: [No Data]

Johnnie.344192 also known as:

MicroWorld-eScanGen:Variant.Johnnie.344192
FireEyeGeneric.mg.3398d2b7bacb7181
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacGen:Variant.Johnnie.344192
CylanceUnsafe
ZillyaTrojan.Khalesi.Win32.2701
K7AntiVirusRiskware ( 0040eff71 )
AlibabaTrojan:Win32/Khalesi.b3bd6694
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.7bacb7
BitDefenderThetaGen:NN.ZexaF.34294.xuW@aaRdSchi
ESET-NOD32Win32/Agent.ZZZ
Paloaltogeneric.ml
KasperskyTrojan.Win32.Khalesi.jvg
BitDefenderGen:Variant.Johnnie.344192
NANO-AntivirusTrojan.Win32.Khalesi.fikonr
AvastWin32:Trojan-gen
TencentMalware.Win32.Gencirc.10b10b42
Ad-AwareGen:Variant.Johnnie.344192
TACHYONTrojan/W32.Khalesi.383488
SophosMal/Generic-S
ComodoMalware@#3bl83kgs0ovjg
DrWebTrojan.DownLoader26.60775
McAfee-GW-EditionGenericRXGQ-BB!3398D2B7BACB
SentinelOneStatic AI – Suspicious PE
EmsisoftGen:Variant.Johnnie.344192 (B)
APEXMalicious
GDataGen:Variant.Johnnie.344192
JiangminTrojan.Khalesi.bef
AviraHEUR/AGEN.1116860
Antiy-AVLTrojan/Generic.ASMalwS.284F79C
MicrosoftTrojan:Win32/Occamy.C
CynetMalicious (score: 99)
AhnLab-V3Malware/Win32.Generic.C2752881
McAfeeGenericRXGQ-BB!3398D2B7BACB
VBA32BScope.Trojan.Downloader
MalwarebytesTrojan.Downloader
YandexTrojan.GenAsa!5Rii3Kuk/P8
IkarusTrojan.Khalesi
eGambitUnsafe.AI_Score_99%
FortinetW32/Generic.AC.41D25E
AVGWin32:Trojan-gen
PandaTrj/GdSda.A

How to remove Johnnie.344192?

Johnnie.344192 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment