Malware

Midie.108108 information

Malware Removal

The Midie.108108 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Midie.108108 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Attempts to modify proxy settings

How to determine Midie.108108?


File Info:

name: AA06E7AD5C7B3558F7EB.mlw
path: /opt/CAPEv2/storage/binaries/e5bc120c879d65a4c0b8fde7a31c00248c5a69906babc2542ee798d8c7d7c0f4
crc32: 725036F4
md5: aa06e7ad5c7b3558f7eb6d81d1d5195a
sha1: fccd874354cfaf17e157d3d969d464576a8822ed
sha256: e5bc120c879d65a4c0b8fde7a31c00248c5a69906babc2542ee798d8c7d7c0f4
sha512: 22141d6a260b343bb6a5f3d1a9a3891aa93185026abbf02e0357fc9d08d87a39daa170455e67b7add8b3d9d59bfcae8f0e4dc8df5b9cf17b4ee98f2e5143372a
ssdeep: 196608:4mCvK7d6+fkwMmgpsjmKkJV4SsJVLJVt4CwIIs:zfvfYmgpsCFls7d4CzIs
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T117A60112F382C5B3E517557018BB673ADA36EE610F11CA83B7B4FEB95C332A0965610E
sha3_384: 083568fa4669f60f1287424f803acf9942c774667ac3f5a8617a0474457722b53d32c97a9720eb97e442eb7fd7123263
ep_bytes: 558bec6aff68a805cc0068342f4f0064
timestamp: 2022-01-20 12:52:58

Version Info:

FileVersion: 1.0.0.0
FileDescription: windows程序
ProductName: windows程序
ProductVersion: 1.0.0.0
CompanyName: windows程序
LegalCopyright: windows程序
Comments: windows程序
Translation: 0x0804 0x04b0

Midie.108108 also known as:

BkavW32.AIDetect.malware1
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Midie.108108
ClamAVWin.Malware.Generic-9820446-0
ALYacGen:Variant.Midie.108108
CylanceUnsafe
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 005246d51 )
K7GWTrojan ( 005246d51 )
Cybereasonmalicious.354cfa
CyrenW32/QQhelper.C.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/FlyStudio.Injector.D potentially unwanted
APEXMalicious
CynetMalicious (score: 100)
BitDefenderGen:Variant.Midie.108108
AvastWin32:MiscX-gen [PUP]
TencentRiskTool.Win32.FlyStudio.16000346
Ad-AwareGen:Variant.Midie.108108
EmsisoftGen:Variant.Midie.108108 (B)
ComodoTrojWare.Win32.Agent.OSCF@5rs7jr
VIPREGen:Variant.Midie.108108
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.aa06e7ad5c7b3558
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.1TYMTF4
MAXmalware (ai score=84)
Antiy-AVLTrojan/Generic.ASCommon.FA
ArcabitTrojan.Midie.D1A64C
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
Acronissuspicious
VBA32BScope.Trojan.Downloader
MalwarebytesTrojan.FlyStudio
RisingHackTool.Agent!1.B2A6 (CLASSIC)
IkarusTrojan.Black
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CoinMiner.65CA!tr
BitDefenderThetaGen:NN.ZexaF.34682.@t3@aaSBjZbb
AVGWin32:MiscX-gen [PUP]
CrowdStrikewin/malicious_confidence_60% (D)

How to remove Midie.108108?

Midie.108108 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment