Malware

Midie.70494 malicious file

Malware Removal

The Midie.70494 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Midie.70494 virus can do?

  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

Related domains:

ok-cdn-ory-1-1.abbtj.com
ok-cdn-ory-9-1.abbtj.com
ok-cdn-ory-8-1.abbtj.com
ok-cdn-ory-7-1.abbtj.com
ok-cdn-ory-6-1.abbtj.com
ok-cdn-ory-5-1.abbtj.com
ok-cdn-ory-4-1.abbtj.com
ok-cdn-ory-3-1.abbtj.com
ok-cdn-ory-2-1.abbtj.com

How to determine Midie.70494?


File Info:

crc32: 92B712CC
md5: 10c16e9b4b408ec207541e7df203591a
name: 10C16E9B4B408EC207541E7DF203591A.mlw
sha1: 3f670efb278e9356946ae1bcc83d562224dc370e
sha256: 56416e6d3c4152edb62e2e6879ae2fc1e6b0bc3f4e009698b079e06cef90a4e0
sha512: 63a2e7769cf87ed6bc4511accb9f683daad40e9d96403b9fa5211a12109ccb95bcaf9a60a0ab6e77ae762a1aa2d968a635f385680067c5862898040e2b9140ce
ssdeep: 24576:C80qU0nT1x9/o7/Z4ERsUIT5ycZXi4TTW+g/7O9q2JgMSOfs:CiU0nRx2V3RsUITMug/72qyR
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyright (C) OKx7edfx8ba1 2018
InternalName: OKx7edfx8ba1
FileVersion: 0.0.0.731
CompanyName: OKx5faex4fe1x8ba1x6570x5668
ProductName: OKx7edfx8ba1
ProductVersion: 0.0.0.731
FileDescription: OKx7edfx8ba1
OriginalFilename: OK-WXx8ba1x6570x5668.exe
Translation: 0x0009 0x04b0

Midie.70494 also known as:

K7AntiVirusTrojan ( 0050725b1 )
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Midie.70494
ALYacGen:Variant.Midie.70494
MalwarebytesMalware.AI.1386912270
K7GWTrojan ( 0050725b1 )
Cybereasonmalicious.b4b408
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.AAuto.A suspicious
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Injuke.fbbm
BitDefenderGen:Variant.Midie.70494
NANO-AntivirusTrojan.Win32.Strictor.fhdasm
Ad-AwareGen:Variant.Midie.70494
SophosGeneric ML PUA (PUA)
BitDefenderThetaGen:NN.ZexaF.34266.gnKfaCfkLhpG
McAfee-GW-EditionBehavesLike.Win32.Dropper.tc
FireEyeGeneric.mg.10c16e9b4b408ec2
EmsisoftGen:Variant.Midie.70494 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.cqisc
AviraHEUR/AGEN.1136933
Antiy-AVLTrojan/Generic.ASMalwS.2800580
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Midie.D1135E
GDataGen:Variant.Midie.70494
McAfeeGenericRXAA-AA!10C16E9B4B40
MAXmalware (ai score=86)
VBA32TrojanDownloader.Banload
YandexTrojan.GenAsa!Nly9AoXnxJE
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Malware-gen

How to remove Midie.70494?

Midie.70494 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment