Malware

Midie.75509 removal tips

Malware Removal

The Midie.75509 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Midie.75509 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Behavioural detection: Injection (inter-process)
  • CAPE detected the embedded pe malware family
  • Attempts to disable Windows Auto Updates
  • Anomalous binary characteristics
  • Attempts to modify Explorer settings to prevent hidden files from being displayed
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Midie.75509?


File Info:

name: B20C5A7DD422195C2027.mlw
path: /opt/CAPEv2/storage/binaries/7966375c5974dd6cc34a64cf90a21b07b965fda6b65714a53f080b923ad78fdf
crc32: 99FC5204
md5: b20c5a7dd422195c202740fb9c4eb687
sha1: 20b05bc010e5a56c349d4e219ac524cee3b952b5
sha256: 7966375c5974dd6cc34a64cf90a21b07b965fda6b65714a53f080b923ad78fdf
sha512: 7a0daae292d4d72a1bd221e00546bec816760c1951b8064e22bf08773a5f3ab841f51003bf6e8343a29d02833ac48544c25393533bcf9cfd7e81e30a143a26e2
ssdeep: 3072:sAWLd32FYGYviojqOayjUrrU2f7HbEH1/rKvo3m73:s/viojquErTf7HoIo36
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12A142977FE918995D95C123159E3C6F416B2BC0E9F47010B66A4376A2DF3E200DE8B8B
sha3_384: 9ab15475ad7ac46cdfe31522f187da4bb7a78ddb7b91b0b9162300c9b1a208bf55c2f5eab57175a944535a94984966e1
ep_bytes: 6810154000e8eeffffff000060000000
timestamp: 2012-09-15 04:06:28

Version Info:

Translation: 0x0409 0x04b0
ProductName: Chouser
FileVersion: 7.66
ProductVersion: 7.66
InternalName: Subculture
OriginalFilename: Subculture.exe

Midie.75509 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Midie.75509
CAT-QuickHealTrojan.JorikMF.S28717717
SkyhighBehavesLike.Win32.VBObfus.dm
McAfeeGenDownloader.rv
MalwarebytesGeneric.Malware.AI.DDS
SangforSuspicious.Win32.Save.a
K7AntiVirusEmailWorm ( 0054d10f1 )
K7GWEmailWorm ( 0054d10f1 )
Cybereasonmalicious.dd4221
BaiduWin32.Worm.Pronny.fx
VirITTrojan.Win32.Zyx.NY
SymantecW32.Changeup!gen20
tehtrisGeneric.Malware
ESET-NOD32Win32/Pronny.EB
APEXMalicious
TrendMicro-HouseCallWORM_VOBFUS.SM02
ClamAVWin.Trojan.VB-1556
KasperskyTrojan.Win32.Jorik.Vobfus.fmhj
BitDefenderGen:Variant.Midie.75509
NANO-AntivirusTrojan.Win32.Autoruner1.covjyh
AvastWin32:VB-AEMC [Trj]
TencentTrojan.Win32.Jorik.hc
EmsisoftGen:Variant.Midie.75509 (B)
F-SecureTrojan.TR/Jorik.Vobfus.fmhh
DrWebWin32.HLLW.Autoruner1.25832
VIPREGen:Variant.Midie.75509
TrendMicroWORM_VOBFUS.SM02
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.b20c5a7dd422195c
SophosMal/Chuckee-E
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=85)
JiangminTrojan/Jorik.hwbx
WebrootW32.Trojan.Gen
GoogleDetected
AviraTR/Jorik.Vobfus.fmhh
VaristW32/VB.HE.gen!Eldorado
Antiy-AVLWorm/Win32.WBNA.gen
Kingsoftmalware.kb.a.994
MicrosoftWorm:Win32/Vobfus.HV
XcitiumTrojWare.Win32.Pronny.EB@4qtzpj
ArcabitTrojan.Midie.D126F5
ZoneAlarmTrojan.Win32.Jorik.Vobfus.fmhj
GDataGen:Variant.Midie.75509
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Menti.R36560
Acronissuspicious
VBA32Trojan.Vobfus
ALYacGen:Variant.Midie.75509
TACHYONTrojan/W32.VB-Jorik.208896.C
Cylanceunsafe
PandaTrj/Genetic.gen
RisingWorm.Pronny!8.2E9 (TFE:3:hBEkFWHGfCS)
YandexTrojan.GenAsa!Hd93axaRSqY
IkarusTrojan.Win32.Jorik
MaxSecureTrojan.Malware.4529107.susgen
FortinetW32/VBObfus.AU!tr
BitDefenderThetaGen:NN.ZevbaF.36802.mm0@ayc4Qimi
AVGWin32:VB-AEMC [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)
alibabacloudTrojan.Win.Jorik.37fa9069

How to remove Midie.75509?

Midie.75509 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment