Malware

What is “Midie.124942”?

Malware Removal

The Midie.124942 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Midie.124942 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Midie.124942?


File Info:

name: F305956C3386BD5B2C8F.mlw
path: /opt/CAPEv2/storage/binaries/70eb66da6f6670c6cab9ae08a9ae28fcc10ea75d1936da31cfe0adfda9e3575b
crc32: D4787194
md5: f305956c3386bd5b2c8f7ddfa67470bf
sha1: 06fb782efca22f30baf9ad9332acdfc93739160b
sha256: 70eb66da6f6670c6cab9ae08a9ae28fcc10ea75d1936da31cfe0adfda9e3575b
sha512: 9301ffc71431a6685ce8cac6355d1e635e7bac084324d2512a03e85d5eaab89059bfc39c7aa80663c93d373549ba53523ee24fc601f6bb3cc01d501da9252f68
ssdeep: 6144:Xw2XSFKfXJQN4VxDLxCmdUZ/c+uucY5nO09pmw57y:kFexDLxCmdUZ/c+uucY5nO09pmw5+
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T139445A39D8709929EA4D7FF09BF39B9828596E2007480597BE0E0E458F5FFF46067293
sha3_384: 1d9c7ca78fcd1378ebee8d6334715efe8a5dd25fc91f51f5b07d2e4c8b27438621200c8828916cb412f7d0f7679cbe66
ep_bytes: e807300000e9a4feffff3b0d04b14300
timestamp: 2023-06-11 09:52:05

Version Info:

Comments: Il s'agit d'une application légitime.
CompanyName: Schneider Electric SE
FileDescription: Schneider Electric SE Produit
FileVersion: 381
InternalName: ApplicationInterne
LegalCopyright: Droit d'auteur © Schneider Electric SE Tous droits réservés.
LegalTrademarks: Marques déposées © Schneider Electric SE
OriginalFilename: app.exe
ProductName: Application
ProductVersion: 381
Translation: 0x0407 0x04b0

Midie.124942 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Midie.124942
ALYacGen:Trojan.Heur2.FU.pq2@amE9uZpi
MalwarebytesMalware.AI.219555532
VIPREGen:Variant.Midie.124942
SangforTrojan.Win32.Save.a
Cybereasonmalicious.c3386b
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.GKPI
APEXMalicious
KasperskyVHO:Backdoor.Win32.Convagent.gen
BitDefenderGen:Variant.Midie.124942
AvastWin32:PWSX-gen [Trj]
EmsisoftGen:Variant.Midie.124942 (B)
McAfee-GW-EditionBehavesLike.Win32.Generic.dh
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.f305956c3386bd5b
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Midie.124942
GoogleDetected
MAXmalware (ai score=85)
ArcabitTrojan.Midie.D1E80E
ZoneAlarmVHO:Backdoor.Win32.Convagent.gen
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
Cylanceunsafe
IkarusAdWare.Lollipop
MaxSecureSpy.W32.Stealer.gen_269358
BitDefenderThetaAI:Packer.07719ED820
AVGWin32:PWSX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_90% (D)

How to remove Midie.124942?

Midie.124942 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment