Malware

Midie.135834 removal guide

Malware Removal

The Midie.135834 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Midie.135834 virus can do?

  • Performs HTTP requests potentially not found in PCAP.
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Touches a file containing cookies, possibly for information gathering

How to determine Midie.135834?


File Info:

name: 058D1C9119A1D25C4FB8.mlw
path: /opt/CAPEv2/storage/binaries/587d08bbff2ca5b54e7e5ed2277fded0d2ab7431d02bb67a541f4fe7d1f87391
crc32: ADD175BC
md5: 058d1c9119a1d25c4fb816532d959c3c
sha1: 28745c50a177659da9d5534bffe0d4955cccecce
sha256: 587d08bbff2ca5b54e7e5ed2277fded0d2ab7431d02bb67a541f4fe7d1f87391
sha512: 1aed480b61daffe49a034c523a2c66cfa17636b7680d783a769af9172a2d84502f3e422182045fe6796cf9bbe30b7035f2fa7ca7cbe38f4d7aec3e1926a8973d
ssdeep: 12288:tT+VhAosqGwwFIj8E79IyQx6XfD6jYxU222gm+LcEG3iujF+:tmhFsqjwej8yIyQx6rGP2gBG3B+
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17C059E02B6D280F5CF361531196A7776A67EFA160B34CFC393A9DE1D1E32181993723A
sha3_384: a3cbd0d80624fbd9ab2cf5dbe5ff9eef002e3d391a72b45fe75472dbf20a8d94d807ee65f5171c9e1e012aa81ca99eb6
ep_bytes: 558bec6aff68c889490068c443460064
timestamp: 2013-04-19 12:12:23

Version Info:

FileVersion: 1.0.0.0
FileDescription: 易语言程序
ProductName: 电商联盟
ProductVersion: 1.0.0.0
CompanyName: 易语言程序
LegalCopyright: 网赚项目招商 QQ:857447441
Comments: 本程序使用易语言编写(http://www.eyuyan.com)
Translation: 0x0804 0x04b0

Midie.135834 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Midie.135834
ClamAVWin.Packed.Flystudio-10010274-0
CAT-QuickHealRisktool.Flystudio.18826
SkyhighBehavesLike.Win32.Generic.bh
McAfeeGenericRXFD-JO!058D1C9119A1
MalwarebytesGeneric.Malware.AI.DDS
VIPREGen:Variant.Midie.135834
K7AntiVirusTrojan ( 005246d51 )
K7GWPassword-Stealer ( 004a98b61 )
Cybereasonmalicious.0a1776
ArcabitTrojan.Midie.D2129A
VirITBackdoor.Win32.Generic.JID
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/LockScreen.BLO
APEXMalicious
CynetMalicious (score: 100)
BitDefenderGen:Variant.Midie.135834
AvastWin32:MalwareX-gen [Trj]
TencentMalware.Win32.Gencirc.10b646ed
SophosGeneric ML PUA (PUA)
F-SecureTrojan:W32/DelfInject.R
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.058d1c9119a1d25c
EmsisoftGen:Variant.Midie.135834 (B)
IkarusPUA.FlyStudio
JiangminHeur:Adware/Clicker
GoogleDetected
MAXmalware (ai score=85)
Antiy-AVLTrojan/Win32.LockScreen
Kingsoftmalware.kb.a.1000
XcitiumWorm.Win32.Dropper.RA@1qraug
MicrosoftTrojan:Win32/Emotet!ml
ViRobotTrojan.Win32.A.PSW-QQPass.888832.G
GDataWin32.Trojan.PSE.13YMLT9
VaristW32/Trojan.CLL.gen!Eldorado
ALYacGen:Variant.Midie.135834
VBA32BScope.Trojan.Gotango
Cylanceunsafe
RisingRansom.LockScreen!1.9CC8 (CLASSIC)
YandexTrojan.GenAsa!krEmsRM8SW8
SentinelOneStatic AI – Malicious PE
MaxSecureDropper.Dinwod.frindll
FortinetRiskware/FlyApplication
AVGWin32:MalwareX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_60% (D)

How to remove Midie.135834?

Midie.135834 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment