Malware

How to remove “Midie.100186 (B)”?

Malware Removal

The Midie.100186 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Midie.100186 (B) virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Presents an Authenticode digital signature
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.

How to determine Midie.100186 (B)?


File Info:

name: C6C8213DD53C48ACC48A.mlw
path: /opt/CAPEv2/storage/binaries/a45e57c2d4ef22383f2fd7b2e49330295235d232b70d84bd6225ea57cb3bed0e
crc32: 3DA5C2DF
md5: c6c8213dd53c48acc48a30c4ce09d6a4
sha1: 101a9e643ec1e85834dcbbb0472f0517a1e03d42
sha256: a45e57c2d4ef22383f2fd7b2e49330295235d232b70d84bd6225ea57cb3bed0e
sha512: aa0329345152d8e28615507d1ed0a30988813d981c6411d7ba734e47baaa460b5aba96a8034d04f1305e7a156c87fd323af428d7bc969a71de15c81184c24923
ssdeep: 12288:DgIlbVWFpC4jHSoKemAY9zBMO1FZ/79Ogyj6p2:DflbVWFpC4jSoKemXR9xRC02
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1F8945A126AB1A4B3D115B172C4E227379BBC4E221AADC377979C8D687F60D114A2FD0F
sha3_384: b943885d577a593df7ab269b8a27830b4379ca938594251b009ac272c16ab12fcd5d17958afd7aed9e17298676b360e9
ep_bytes: 558bec6aff68e82d4300685ce8410064
timestamp: 2021-11-30 07:31:31

Version Info:

FileVersion: 1.0.0.1
FileDescription: Service
ProductName: Service
ProductVersion: 1.0.0.1
LegalCopyright: 作者版权所有 请尊重并使用正版
Comments: Service
Translation: 0x0804 0x04b0

Midie.100186 (B) also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Midie.100186
FireEyeGeneric.mg.c6c8213dd53c48ac
McAfeeArtemis!C6C8213DD53C
CylanceUnsafe
SangforTrojan.Win32.Save.a
Cybereasonmalicious.43ec1e
Paloaltogeneric.ml
CynetMalicious (score: 100)
BitDefenderGen:Variant.Midie.100186
AvastWin32:DangerousSig [Trj]
Ad-AwareGen:Variant.Midie.100186
SophosGeneric ML PUA (PUA)
McAfee-GW-EditionArtemis!Trojan
EmsisoftGen:Variant.Midie.100186 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Midie.100186
AviraHEUR/AGEN.1140931
MAXmalware (ai score=83)
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
VBA32BScope.Trojan.Dynamer
ALYacGen:Variant.Midie.100186
RisingTrojan.Injector!1.A1C3 (CLASSIC)
IkarusTrojan.Win32.CoinMiner
AVGWin32:DangerousSig [Trj]

How to remove Midie.100186 (B)?

Midie.100186 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment