Malware

Midie.104977 removal instruction

Malware Removal

The Midie.104977 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Midie.104977 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Midie.104977?


File Info:

name: 9DC4B0EAA81BAB3CB048.mlw
path: /opt/CAPEv2/storage/binaries/87c329fd7432872acbddf59b52ae6ebfbe9380060b68fbadbc734f4e741e59d1
crc32: 9EF83B84
md5: 9dc4b0eaa81bab3cb04870ae1a941f3b
sha1: 8b6022d295094c1f1edcc7a58e04f1445404770e
sha256: 87c329fd7432872acbddf59b52ae6ebfbe9380060b68fbadbc734f4e741e59d1
sha512: 0d615bf5238e384c6a32a961d6f411a56a64569c2a4b58f912845176a028f0a35cab458a62c5ee668678c2be68961a1ba3d6ffbedce3eb99868f68cafa41cf7b
ssdeep: 49152:r4F7TFzw8kBwsip8olELP2e9Dc+wGFQr9mLRp7zi+KL2D+kh7pECS338ltdJJUmE:W7TFzRkSl8oOx9FgILRZe+q2Dl2Zn85Y
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18CE5337176F81C04FC599FFCD068A859196A2B14838DC6D03B245D8B6EE4E9F7329C2B
sha3_384: ee5d46f14005fd4be43c463428af8451c9a6ea0a9159d3e2ff7136214a5d921bfa70fdc41619c570f373f6b4b74b474f
ep_bytes: eb08001012000000000060e800000000
timestamp: 2012-06-26 10:32:30

Version Info:

Comments:
CompanyName: 金山软件股份有限公司
FileDescription: JxOnline Client
FileVersion: 3, 0, 0, 6
InternalName: Game
LegalCopyright: 版权所有 (C) 1995-2004 金山软件股份有限公司
LegalTrademarks:
OLESelfRegister:
OriginalFilename: Game.exe
PrivateBuild:
ProductName: SwordOnline
ProductVersion: 3.00.00.2003
SpecialBuild:
Translation: 0x0804 0x04b0

Midie.104977 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Crysan.m!c
MicroWorld-eScanGen:Variant.Midie.104977
FireEyeGeneric.mg.9dc4b0eaa81bab3c
McAfeeArtemis!9DC4B0EAA81B
CylanceUnsafe
K7AntiVirusTrojan ( 005203381 )
K7GWTrojan ( 005203381 )
CrowdStrikewin/malicious_confidence_80% (W)
SymantecML.Attribute.HighConfidence
APEXMalicious
BitDefenderGen:Variant.Midie.104977
AvastWin32:Malware-gen
Ad-AwareGen:Variant.Midie.104977
EmsisoftGen:Variant.Midie.104977 (B)
McAfee-GW-EditionArtemis!Trojan
SophosMal/Generic-S
GDataGen:Variant.Midie.104977
MAXmalware (ai score=82)
GridinsoftRansom.Win32.Sabsik.sa
ArcabitTrojan.Midie.D19A11
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
BitDefenderThetaGen:NN.ZexaF.34062.9I0@ayWg4cij
ALYacGen:Variant.Midie.104977
VBA32BScope.Trojan.Downloader
YandexTrojan.GenAsa!uWMNeO8FMZs
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/PossibleThreat
AVGWin32:Malware-gen

How to remove Midie.104977?

Midie.104977 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment