Categories: Malware

Mikey.105842 removal instruction

The Mikey.105842 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

What Mikey.105842 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Attempts to connect to a dead IP:Port (5 unique times)
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • Detects VirtualBox through the presence of a registry key
  • Detects VMware through the presence of a registry key
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

How to determine Mikey.105842?


File Info:

crc32: 5925E1C5md5: 36ed6ebbde3ca54e4a71950518b5572ename: eupanda.exesha1: 09cd4ff01620634229d346b94eadcd4fc5510426sha256: fcc5a956c6a26326d2ef51aa71f9996dc7e5003f332f24619464c5187b3008c2sha512: 4dbb819ef9cc5dbd457ccb24842b50a6416f792c20439580dc1d2d8b69cac7ae53d1f0442db2f6b487e95b1a4bd8aef8ae54e2c87649d49d276af5d1ec9a10a6ssdeep: 49152:deR5PcN/45z7p9PgYGG8BQBCqnNyw/jKx:devcO5F8eC+NN/type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: InternalName: FileVersion: 1.0.0.0CompanyName: LegalTrademarks: Comments: Modified by an unpaid evaluation copy of Resource Tuner 2. http://www.heaventools.comProductName: ProductVersion: 1.0.0.0FileDescription: OriginalFilename: Translation: 0x0000 0x04e3

Mikey.105842 also known as:

MicroWorld-eScan Gen:Variant.Mikey.105842
McAfee Artemis!36ED6EBBDE3C
Cylance Unsafe
VIPRE Trojan.Win32.Generic!BT
K7AntiVirus Trojan-Downloader ( 005594821 )
Alibaba TrojanDownloader:Win32/Generic.bfd742cc
K7GW Trojan-Downloader ( 005594821 )
Arcabit Trojan.Mikey.D19D72
BitDefenderTheta Gen:NN.ZexaF.32515.Tv0@a4gTe1fc
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/TrojanDownloader.Agent.ETU
TrendMicro-HouseCall TROJ_GEN.R002H09KO19
Kaspersky HEUR:Trojan-Downloader.Win32.Generic
BitDefender Gen:Variant.Mikey.105842
ViRobot Trojan.Win32.Z.Fugrafa.1798144
Rising Downloader.Agent!1.BB58 (CLASSIC)
Endgame malicious (high confidence)
F-Secure Trojan.TR/Dldr.Agent.sgdhx
McAfee-GW-Edition BehavesLike.Win32.Dropper.tc
SentinelOne DFI – Suspicious PE
Trapmine suspicious.low.ml.score
FireEye Generic.mg.36ed6ebbde3ca54e
Sophos Mal/Generic-S
APEX Malicious
Cyren W32/Trojan.XBXM-2157
Jiangmin TrojanDownloader.Generic.beql
Avira TR/Dldr.Agent.sgdhx
Fortinet W32/Agent.ETU!tr.dldr
ZoneAlarm HEUR:Trojan-Downloader.Win32.Generic
Acronis suspicious
VBA32 BScope.TrojanRansom.Crusis
ALYac Gen:Variant.Mikey.105842
MAX malware (ai score=80)
Ad-Aware Gen:Variant.Mikey.105842
Ikarus Worm.Win32.Ainslot
GData Gen:Variant.Mikey.105842
AVG FileRepMalware
CrowdStrike win/malicious_confidence_80% (W)
Qihoo-360 Win32/Trojan.5fd

How to remove Mikey.105842?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

MSIL/GenKryptik.GXIZ information

The MSIL/GenKryptik.GXIZ is considered dangerous by lots of security experts. When this infection is active,…

2 months ago

Malware.AI.2789448175 (file analysis)

The Malware.AI.2789448175 is considered dangerous by lots of security experts. When this infection is active,…

2 months ago

Jalapeno.1878 removal instruction

The Jalapeno.1878 is considered dangerous by lots of security experts. When this infection is active,…

2 months ago

What is “Trojan.Heur3.LPT.YmKfaKBcBekib”?

The Trojan.Heur3.LPT.YmKfaKBcBekib is considered dangerous by lots of security experts. When this infection is active,…

2 months ago

How to remove “Worm.Win32.Vobfus.exmt”?

The Worm.Win32.Vobfus.exmt is considered dangerous by lots of security experts. When this infection is active,…

2 months ago

About “TrojanDownloader:Win32/Beebone.JO” infection

The TrojanDownloader:Win32/Beebone.JO is considered dangerous by lots of security experts. When this infection is active,…

2 months ago