Trojan

Should I remove “Trojan:Win32/Johnnie.LM!MTB”?

Malware Removal

The Trojan:Win32/Johnnie.LM!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Johnnie.LM!MTB virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/Johnnie.LM!MTB?


File Info:

name: 3A23CB2899ED05A3406D.mlw
path: /opt/CAPEv2/storage/binaries/fabdc8295e6fe5127deac9b2854b28d0132d9eaac091f89652919fbd1f8ec863
crc32: 1C06CF2C
md5: 3a23cb2899ed05a3406dfafeda844d2c
sha1: ee939205ec2bcef3940b080020b4786cbdea2a06
sha256: fabdc8295e6fe5127deac9b2854b28d0132d9eaac091f89652919fbd1f8ec863
sha512: b86621973751f6c03517bf79df886bb6e1a908aad8087610f3b0c8ada8bfd4b55fbe1963bd2aa61004d9d15e7ad77129467f1fc73f303ff6e67edf52ede8adf6
ssdeep: 6144:QTWIlhDeaviH506QGYv9+Hdxp2C8Q3AHrSj+Vt7XDzdke:ZIlMavS50ZGq+H92fYALe+Xzzdk
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10464AE22ED28963DD63FE476BAC7DDA68DC545E3A41F9C58C46CC250C83E7C189A2237
sha3_384: 5d9fd81b6858d4eae88d43946607ee5761d759407ecd68dce4f2f21365ce52ac143629add2f10f17f9568cf3b2856897
ep_bytes: e808180000e989feffff8bff558bec81
timestamp: 2020-05-21 13:00:44

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Microsoft Office Word
FileVersion: 12.0.4518.1014
InternalName: WinWord
LegalCopyright: © 2006 Microsoft Corporation. All rights reserved.
LegalTrademarks1: Microsoft® is a registered trademark of Microsoft Corporation.
LegalTrademarks2: Windows® is a registered trademark of Microsoft Corporation.
OriginalFilename: WinWord.exe
ProductName: 2007 Microsoft Office system
ProductVersion: 12.0.4518.1014
Translation: 0x0000 0x04e4

Trojan:Win32/Johnnie.LM!MTB also known as:

BkavW32.AIDetectMalware
LionicTrojan.Multi.Generic.4!c
DrWebTrojan.Siggen9.48370
MicroWorld-eScanGen:Variant.Zusy.304041
FireEyeGeneric.mg.3a23cb2899ed05a3
ALYacTrojan.Agent.FormBook
MalwarebytesGeneric.Malware.AI.DDS
VIPREGen:Variant.Zusy.304041
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005673971 )
AlibabaTrojanSpy:Win32/Johnnie.b341c785
K7GWTrojan ( 005673971 )
Cybereasonmalicious.899ed0
BitDefenderThetaGen:NN.ZexaF.36348.su0@ayqkgMai
CyrenW32/FakeDoc.AI.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.HDOD
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Spy.Win32.Noon.aymn
BitDefenderGen:Variant.Zusy.304041
AvastWin32:PWSX-gen [Trj]
TencentMalware.Win32.Gencirc.115b769a
EmsisoftGen:Variant.Zusy.304041 (B)
F-SecureHeuristic.HEUR/AGEN.1311190
ZillyaTrojan.Noon.Win32.13179
TrendMicroTROJ_GEN.R002C0DGV23
McAfee-GW-EditionBehavesLike.Win32.Generic.fc
SophosMal/Generic-R
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Zusy.304041
JiangminTrojanSpy.Noon.pgm
AviraHEUR/AGEN.1311190
MAXmalware (ai score=88)
Antiy-AVLTrojan[Spy]/Win32.Noon
XcitiumMalware@#1pgzwkvxbnzt
ArcabitTrojan.Zusy.D4A3A9
ZoneAlarmTrojan-Spy.Win32.Noon.aymn
MicrosoftTrojan:Win32/Johnnie.LM!MTB
GoogleDetected
AhnLab-V3Malware/Win32.RL_Generic.R337816
Acronissuspicious
McAfeeGenericRXKQ-GS!3A23CB2899ED
VBA32TrojanSpy.Noon
Cylanceunsafe
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0DGV23
RisingTrojan.Kryptik!1.C6D4 (CLASSIC)
YandexTrojan.Igent.bTMntG.26
IkarusTrojan.Agent
MaxSecureTrojan.Malware.101613559.susgen
FortinetW32/Kryptik.HDOD!tr
AVGWin32:PWSX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:Win32/Johnnie.LM!MTB?

Trojan:Win32/Johnnie.LM!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment