Malware

Midie.104698 (B) removal instruction

Malware Removal

The Midie.104698 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Midie.104698 (B) virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Midie.104698 (B)?


File Info:

name: 407EBC38DA6749D31806.mlw
path: /opt/CAPEv2/storage/binaries/53ba12997c1cee471d93148f9fc388b71dfc1627ea8c9f55d10551858522d008
crc32: 7BC12F38
md5: 407ebc38da6749d318066a051f5869ac
sha1: 348932523b6e37faa113a3122c1bcb1249097ec6
sha256: 53ba12997c1cee471d93148f9fc388b71dfc1627ea8c9f55d10551858522d008
sha512: b606d8a0372cfd5e3dcf3b5acc8f31ec92ab208dbd66334c6466cf8ff9e08694552f9eb48ce3c744ada3f27a756c4766d2a25e44e9ad901ec9374e0be5936108
ssdeep: 768:tRDhhCUIz05h5kf/RkzS5BJ2MNW33+IrCHawpOUox/usc+QYgAzF/GMxxWw9bKDI:tRDDYh0Sz0MNwO7UqZQ+gyWwHMG9xKD
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FDD36BB3B6A3FA9CF0478EF1E26150E41C657932378C56579EC0257B6A37C8ED80E606
sha3_384: 9641755282c7c97327aa99667bd91f4835a7b226226cb640adfc57061b4065b95c7e5a4250f783cdd84be7117a8e3f2d
ep_bytes: 68e41f4000e8f0ffffff000000000000
timestamp: 2008-04-02 05:01:54

Version Info:

Translation: 0x0442 0x04b0
CompanyName: Lips
FileDescription: Lips
LegalCopyright: Lips
LegalTrademarks: Lips
ProductName: Lips
FileVersion: 1.00
ProductVersion: 1.00
InternalName: wallonian
OriginalFilename: wallonian.exe

Midie.104698 (B) also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Midie.104698
FireEyeGeneric.mg.407ebc38da6749d3
ALYacGen:Variant.Midie.104698
K7AntiVirusTrojan ( 0058ae091 )
AlibabaTrojanDownloader:Win32/GuLoader.ff10ea1b
K7GWTrojan ( 0058ae091 )
Cybereasonmalicious.23b6e3
BitDefenderThetaGen:NN.ZevbaF.34062.im0@aKlveKmO
CyrenW32/VBKrypt.BEB.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.EQPR
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan-Downloader.Win32.GuLoader.si
BitDefenderGen:Variant.Midie.104698
AvastFileRepMalware
TencentWin32.Trojan-downloader.Guloader.Paly
Ad-AwareGen:Variant.Midie.104698
SophosMal/Generic-S + Troj/Zbot-POJ
TrendMicroTROJ_GEN.R002C0DKT21
McAfee-GW-EditionGuLoader-FDDP!407EBC38DA67
EmsisoftGen:Variant.Midie.104698 (B)
IkarusTrojan.VB.Crypt
GDataGen:Variant.Midie.104698
AviraHEUR/AGEN.1132907
ArcabitTrojan.Midie.D198FA
MicrosoftTrojan:Win32/VBInject.RVH!MTB
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win.Sabsik.R453439
McAfeeGuLoader-FDDP!407EBC38DA67
MAXmalware (ai score=87)
VBA32Malware-Cryptor.GuLoader.gen
MalwarebytesTrojan.MalPack.VB
TrendMicro-HouseCallTROJ_GEN.R002C0DKT21
YandexTrojan.AvsArher.bTx33N
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Injector.EQPR!tr
AVGFileRepMalware
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Midie.104698 (B)?

Midie.104698 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment