Malware

Mikey.113531 removal instruction

Malware Removal

The Mikey.113531 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mikey.113531 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (2 unique times)
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Performs some HTTP requests
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

meun-1300764759.cos.ap-nanjing.myqcloud.com
ocsp.globalsign.com
ocsp2.globalsign.com

How to determine Mikey.113531?


File Info:

crc32: C7B7624F
md5: a517789a09f26f330e498f10508176dd
name: A517789A09F26F330E498F10508176DD.mlw
sha1: 8265172b269fec69e2a6fc52dd553219135862ba
sha256: 5b2225e438cc32515e060cdfb0cf7e09e4b3acf43ee4e73d92bf88e6763b4208
sha512: bf628f009f41bae6fe792cae823266d327628e8e0c7bcf85a3fccc2db8e7fe1c9422a5e9f02fd8e30100a0389af530a84dca1c9cbeb82d4c272b699c381fcd6c
ssdeep: 24576:QMYmc/0puetykeaVLgVlXY9+G3U1fLJOOqTLnRyAjbDMO7QCC9+kXwjpXGks4VPv:QM9c/Su0ygLgTIJIfdEngo7QCCMpXGkr
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x4f5cx8005x7248x6743x6240x6709 x8bf7x5c0ax91cdx5e76x4f7fx7528x6b63x7248
FileVersion: 3.2.0.0
Comments: x672cx7a0bx5e8fx4f7fx7528x6613x8bedx8a00x7f16x5199(http://www.dywt.com.cn)
ProductName: x6613x8bedx8a00x7a0bx5e8f
ProductVersion: 3.2.0.0
FileDescription: x6613x8bedx8a00x7a0bx5e8f
Translation: 0x0804 0x04b0

Mikey.113531 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Mikey.113531
FireEyeGeneric.mg.a517789a09f26f33
CAT-QuickHealTrojan.Mikey
ALYacGen:Variant.Mikey.113531
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabHacktool.Win32.Generic.lvTx
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005239691 )
BitDefenderGen:Variant.Mikey.113531
K7GWTrojan ( 004b8a501 )
Cybereasonmalicious.a09f26
BitDefenderThetaGen:NN.ZexaF.34574.Cv0@auMcwvmb
CyrenW32/S-e743b39f!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.NoobyProtect.G suspicious
APEXMalicious
AvastWin32:Malware-gen
AlibabaPacked:Win32/NoobyProtect.e003e00e
RisingMalware.Heuristic!ET#99% (RDMK:cmRtazqMi9OVgs3A6BCKMvH/d4RY)
Ad-AwareGen:Variant.Mikey.113531
SophosMal/Generic-S
ComodoTrojWare.Win32.Amtar.KNB@4wlm66
ZillyaTrojan.Nimnul.Win32.4182
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
EmsisoftGen:Variant.Mikey.113531 (B)
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=87)
KingsoftWin32.Troj.Banker.(kcloud)
MicrosoftPUA:Win32/Puasson.A!ac
GridinsoftTrojan.Heur!.03010021
ArcabitTrojan.Mikey.D1BB7B
GDataWin32.Application.PUPStudio.B
CynetMalicious (score: 100)
Acronissuspicious
McAfeeArtemis!A517789A09F2
MalwarebytesMalware.Heuristic.1003
TrendMicro-HouseCallTROJ_GEN.R002H0CB521
IkarusPUA.NoobyProtect
eGambitUnsafe.AI_Score_100%
FortinetRiskware/Application
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win32/Trojan.Generic.HxIB6F8A

How to remove Mikey.113531?

Mikey.113531 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment