Malware

Midie.137348 information

Malware Removal

The Midie.137348 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Midie.137348 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Mimics icon used for popular non-executable file format
  • Anomalous binary characteristics

How to determine Midie.137348?


File Info:

name: 58BFC869BDFCDD93DFD9.mlw
path: /opt/CAPEv2/storage/binaries/a9403038240356e47724050205c201c591cceadf558a235081f45f908e27f255
crc32: A75FBC17
md5: 58bfc869bdfcdd93dfd937e494eeeca4
sha1: 5f9fd25cb1de11c500cefafc930983438f0c93c9
sha256: a9403038240356e47724050205c201c591cceadf558a235081f45f908e27f255
sha512: 94e810455f623f04b358038c35bd98d51c9cf1a6cf14c8ab01c6667bd4777264a63d674b89efac6e58b8234fb4ca40a27d7aeeb4088cf2b31c98ac55306e1737
ssdeep: 12288:vw+WNwX4u+e4BoVEmh31wtW37IfP673/1EPy/P//9cRKexJKJLZmN1b0b:vwEIu+NmCmhlLLam9EP8iKHLZmN14b
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T13705F142FAC002B1D1E119716CBA55720B7BFE6792F5E98321C8F6053533D90973AAEE
sha3_384: 3722825166e77fc9837a5e0682b0029da65e45d550e348d3a39868f15aad3634c4ac6bd6ced97e8aa7381cbada4dfe4a
ep_bytes: e8ff190000e97ffeffff3b0da0404100
timestamp: 2014-02-09 04:20:07

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Microsoft Word
FileVersion: 14.0.6024.1000
InternalName: WinWord
LegalCopyright: © 2010 Microsoft Corporation. All rights reserved.
LegalTrademarks1: Microsoft® is a registered trademark of Microsoft Corporation.
LegalTrademarks2: Windows® is a registered trademark of Microsoft Corporation.
OriginalFilename: WinWord.exe
ProductName: Microsoft Office 2010
ProductVersion: 14.0.6024.1000
Translation: 0x0000 0x04e4

Midie.137348 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Facido.b!c
AVGWin32:DropperX-gen [Drp]
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Midie.137348
FireEyeGeneric.mg.58bfc869bdfcdd93
CAT-QuickHealTrojan.GenericRI.S31613491
SkyhighBehavesLike.Win32.Generic.cc
McAfeeGenericRXWH-MA!58BFC869BDFC
Cylanceunsafe
VIPREGen:Variant.Midie.137348
SangforTrojan.Win32.Save.a
AlibabaTrojanDropper:Win32/Facido.b7305502
CrowdStrikewin/malicious_confidence_100% (D)
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/TrojanDropper.Agent.RTY
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Facido-9768987-0
KasperskyTrojan-Dropper.Win32.Agent.tgbctz
BitDefenderGen:Variant.Midie.137348
AvastWin32:DropperX-gen [Drp]
TencentTrojan.Win32.Agent.hct
EmsisoftGen:Variant.Midie.137348 (B)
F-SecureTrojan.TR/Crypt.ZPACK.Gen2
DrWebTrojan.Fakealert.58572
ZillyaDropper.Agent.Win32.577566
Trapminemalicious.high.ml.score
SophosTroj/Mdrop-JTO
IkarusTrojan-Dropper.Win32.Agent
JiangminTrojan.Generic.hrsto
AviraTR/Crypt.ZPACK.Gen2
Antiy-AVLTrojan[Dropper]/Win32.Facido
MicrosoftTrojanDropper:Win32/Facido.A!bit
XcitiumTrojWare.Win32.TrojanDropper.Facido.A@7d50kc
ArcabitTrojan.Midie.D21884
ZoneAlarmTrojan-Dropper.Win32.Agent.tgbctz
GDataWin32.Trojan.PSE.1X3M469
GoogleDetected
AhnLab-V3Trojan/Win.Generic.R641801
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.36802.Y83@a0vQwCki
ALYacGen:Variant.Midie.137348
MAXmalware (ai score=89)
VBA32BScope.TrojanDropper.Agent
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
RisingDropper.Agent!1.B38C (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.3411146.susgen
FortinetW32/Agent.RTY!tr
Cybereasonmalicious.9bdfcd
DeepInstinctMALICIOUS
alibabacloudTrojan:Win/Facido.A

How to remove Midie.137348?

Midie.137348 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment