Malware

How to remove “Midie.44905”?

Malware Removal

The Midie.44905 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Midie.44905 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • At least one process apparently crashed during execution
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Midie.44905?


File Info:

name: F11F9D800E0130517DF7.mlw
path: /opt/CAPEv2/storage/binaries/8950245d79791801a362ba281622227d9425023152fcd15f2bea3a7c132d3d5b
crc32: 4E28FDD8
md5: f11f9d800e0130517df79e019dbae757
sha1: b9055d16e6a24d9bf829d63b4a370b70cd1ce84a
sha256: 8950245d79791801a362ba281622227d9425023152fcd15f2bea3a7c132d3d5b
sha512: 130bf2e5213f90507b1137d61a22ea99ad7e636776c7f85277208d312a15959502613384f5e2c67021cefb8377f989535c6079d3858f310ad9d52201301e463c
ssdeep: 12288:K+jLu7E4a7mqKoe0YlmaKUtErmladU0G+OLz+C:fLuYD7mqKoe0T0deUWPC
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19AC4B0537440C0A8FE6910F27316859433A9DCBBDA18A24A6BC823579FF5BE1193F71B
sha3_384: 85ad4c6ae75e468c1c1c1852215bd00a54b8514025b6d47c0fbe7977e5a7cc92803bc1c64e7d1f6e3749a387c49f1bd3
ep_bytes: e87c600000e989feffff8bff558bec83
timestamp: 2014-12-05 20:25:05

Version Info:

Comments:
CompanyName: EFT Software
FileDescription: HH Tune Pros
FileVersion: 2, 0, 1, 8
InternalName: HD Tune Pro
LegalCopyright: Copyright (C) 2018
LegalTrademarks:
OriginalFilename: HDTunePro.EXE
PrivateBuild:
ProductName: HD Tune Pro
ProductVersion: 5, 8, 0, 2
SpecialBuild:
Translation: 0x0409 0x04b0

Midie.44905 also known as:

LionicTrojan.Win32.Zbot.m6l9
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Midie.44905
FireEyeGeneric.mg.f11f9d800e013051
CAT-QuickHealWorm.Gamarue.WR5
ALYacGen:Variant.Midie.44905
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.TorrentLocker.A
K7AntiVirusTrojan ( 0055e3ef1 )
AlibabaRansom:Win32/Teerac.bba154b0
K7GWTrojan ( 0055e3ef1 )
Cybereasonmalicious.00e013
VirITTrojan.Win32.Dropper.LD
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Filecoder.TorrentLocker.A
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyTrojan-Dropper.Win32.Agent.pegx
BitDefenderGen:Variant.Midie.44905
NANO-AntivirusTrojan.Win32.Encoder.dnxohy
SUPERAntiSpywareRansom.CryptoLocker/Variant
TencentWin32.Trojan.Inject.Auto
Ad-AwareGen:Variant.Midie.44905
SophosMal/Generic-R + Troj/HkMain-CN
ComodoMalware@#1poiqztb1w3wm
DrWebTrojan.Encoder.761
ZillyaTrojan.Scarsi.Win32.1805
TrendMicroTROJ_FILECODER.N
McAfee-GW-EditionTrojan-FFST!F11F9D800E01
EmsisoftGen:Variant.Midie.44905 (B)
IkarusTrojan-Ransom.CryptoLocker
GDataGen:Variant.Midie.44905
JiangminTrojanDropper.Agent.btgg
WebrootW32.Ctblocker
AviraHEUR/AGEN.1244192
Antiy-AVLTrojan/Win32.Scarsi
KingsoftWin32.Troj.Generic_a.a.(kcloud)
ArcabitTrojan.Midie.DAF69
ZoneAlarmTrojan-Dropper.Win32.Agent.pegx
MicrosoftRansom:Win32/Teerac.A
AhnLab-V3Win-Trojan/Ndvia.104960
Acronissuspicious
McAfeeTrojan-FFST!F11F9D800E01
MAXmalware (ai score=100)
VBA32BScope.Trojan.KillFiles
MalwarebytesMachineLearning/Anomalous.100%
PandaTrj/RansomCrypt.C
TrendMicro-HouseCallTROJ_FILECODER.N
RisingTrojan.DL.Win32.Wauchos.s (CLOUD)
YandexTrojan.GenAsa!4CJ1eGbPZnM
FortinetW32/Injector.BUTP!tr
BitDefenderThetaGen:NN.ZexaF.34212.Iq0@ay2A0Cbi
AVGWin32:Teerac-I [Trj]
AvastWin32:Teerac-I [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Midie.44905?

Midie.44905 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment