Malware

Midie.104698 information

Malware Removal

The Midie.104698 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Midie.104698 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Midie.104698?


File Info:

name: 2767EA758CBD7C7D49DB.mlw
path: /opt/CAPEv2/storage/binaries/69296732d777f1e3111a720192764fc2740f6374dc070dff3e40c1c164dcdcfe
crc32: B80C9571
md5: 2767ea758cbd7c7d49dbbd490402efa3
sha1: ab36ca78c602009f18f841afbe37df97a6ad7e0f
sha256: 69296732d777f1e3111a720192764fc2740f6374dc070dff3e40c1c164dcdcfe
sha512: 842f9cab50edde8efc5e0b6d3339ed7e3dfd3f463f69723d3362c9141500f4ea725943ba9c394df3779028763523edc7c04790515d8316ed05de4065a03e4380
ssdeep: 1536:teDivhkoUI7BrBQVoJPP+7OuIGKANFUuRB7IY4SZ01ND:te8TUINiVoJPP+EANFUuRBAlN
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F2D35B737657BE9EF5078DF2C96540E85151BC323F99CA0B9DD01B2F297B88EA90C242
sha3_384: 39c13435592728d2a838307ae755b3bbd46ee722194672253f45d865041b6c9e04084e9c648852418a3946c5e2718d21
ep_bytes: 68d41f4000e8f0ffffff000000000000
timestamp: 2016-10-27 19:41:21

Version Info:

Translation: 0x0442 0x04b0
CompanyName: Lips
FileDescription: Lips
LegalCopyright: Lips
LegalTrademarks: Lips
ProductName: Lips
FileVersion: 1.00
ProductVersion: 1.00
InternalName: UOFFICIEL
OriginalFilename: UOFFICIEL.exe

Midie.104698 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.GuLoader.a!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Midie.104698
FireEyeGen:Variant.Midie.104698
ALYacGen:Variant.Midie.104698
K7AntiVirusTrojan ( 0058ae091 )
AlibabaTrojanDownloader:Win32/GuLoader.47c01b96
K7GWTrojan ( 0058ae091 )
CrowdStrikewin/malicious_confidence_90% (W)
CyrenW32/VBKrypt.BEB.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.EQPR
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan-Downloader.Win32.GuLoader.rm
BitDefenderGen:Variant.Midie.104698
AvastWin32:Trojan-gen
TencentWin32.Trojan-downloader.Guloader.Hqvn
Ad-AwareGen:Variant.Midie.104698
SophosTroj/Zbot-POJ
DrWebTrojan.VbCrypt.2391
TrendMicroTROJ_GEN.R002C0DKS21
McAfee-GW-EditionGuLoader-FDDP!2767EA758CBD
EmsisoftGen:Variant.Midie.104698 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Injector.gqdlt
MAXmalware (ai score=82)
GridinsoftRansom.Win32.Zbot.sa
MicrosoftTrojan:Win32/VBInject.RVH!MTB
GDataGen:Variant.Midie.104698
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win.Sabsik.R453439
McAfeeGuLoader-FDDP!2767EA758CBD
VBA32Malware-Cryptor.GuLoader.gen
MalwarebytesTrojan.MalPack.VB
TrendMicro-HouseCallTROJ_GEN.R002C0DKS21
YandexTrojan.AvsArher.bTx33N
IkarusTrojan.VB.Crypt
FortinetW32/Injector.EQPR!tr
BitDefenderThetaGen:NN.ZevbaF.34294.im0@a0Q5O3dO
AVGWin32:Trojan-gen
PandaTrj/GdSda.A
MaxSecureTrojan.Malware.300983.susgen

How to remove Midie.104698?

Midie.104698 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment