Malware

Johnnie.358690 removal guide

Malware Removal

The Johnnie.358690 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Johnnie.358690 virus can do?

  • Executable code extraction
  • Unconventionial language used in binary resources: Lithuanian (Classic)
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Johnnie.358690?


File Info:

crc32: 694D95E8
md5: f038216cb43ccc92c4d03951b529c89b
name: F038216CB43CCC92C4D03951B529C89B.mlw
sha1: d70a726d84dc8f5706d4b857176f30310a1b8981
sha256: d23cfd87e8aee8e9db354bb276f0eee64da604014eb93ae74d6af9dc31613330
sha512: cd2d3fb66d1dab840265da782c4621497a3c95a7c523741548e6a950f3cf57027f4bfc4ed6e8e362e42c09f5b92ac912e2e53cf21ed4b83ee97775d353e8523e
ssdeep: 12288:yVQ66KSyqoGwu5AHFFXcBLy6WHdvUFgHLpBGfBjB:yVQ66X+Gwu5AHFFXcBLy6WHdvUFgHLpS
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
ProductVersion: 1.00
InternalName: PrivateStub
FileVersion: 1.00
OriginalFilename: PrivateStub.exe
ProductName: NotePad 2K

Johnnie.358690 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
DrWebTrojan.VbCrypt.250
CynetMalicious (score: 99)
ALYacGen:Variant.Johnnie.358690
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/GenKryptik.8097ab5e
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.d84dc8
CyrenW32/VBInject.AFJ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.FHFO
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Malware.Johnnie-9875544-0
KasperskyBackdoor.MSIL.Crysan.ccm
BitDefenderGen:Variant.Johnnie.358690
MicroWorld-eScanGen:Variant.Johnnie.358690
Ad-AwareGen:Variant.Johnnie.358690
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZevbaF.34790.Lm3@amdu5ejO
McAfee-GW-EditionBehavesLike.Win32.VBObfus.hh
FireEyeGeneric.mg.f038216cb43ccc92
EmsisoftGen:Variant.Johnnie.358690 (B)
WebrootW32.Trojan.Gen
AviraTR/Kryptik.fvjhf
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Johnnie.358690
McAfeeGenericRXAA-AA!F038216CB43C
MAXmalware (ai score=86)
VBA32Malware-Cryptor.VB.gen.1
MalwarebytesMalware.AI.3800961425
TrendMicro-HouseCallTROJ_GEN.R06CH0DG821
RisingHackTool.VBInject!1.6481 (CLASSIC)
IkarusTrojan.Win32.Krypt
FortinetW32/GenKryptik.FHFO!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
Qihoo-360Win32/Backdoor.Crysan.HwMAc58A

How to remove Johnnie.358690?

Johnnie.358690 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment