Malware

About “Mikey.113610 (B)” infection

Malware Removal

The Mikey.113610 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mikey.113610 (B) virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Mikey.113610 (B)?


File Info:

name: 5B02789974E562C2DE81.mlw
path: /opt/CAPEv2/storage/binaries/ae3561850de0c2c748be1607821d943c6a19b63a487fa65ac7cfdaf98306c2cd
crc32: D570A4E6
md5: 5b02789974e562c2de81fb78f8624882
sha1: 98ff3fcd18ac1f23f85440383b252e8327a9145f
sha256: ae3561850de0c2c748be1607821d943c6a19b63a487fa65ac7cfdaf98306c2cd
sha512: 54289b37e3f27af11ff29d41ef5e554c73589c46df19546be1e8a5cae5bcc986b9843b40ae08e8f14328128f3cff12205ec6036ead7a8309e91a42c5c4c21a87
ssdeep: 24576:7vgc2EIS6t72KNT0iKcxNYP6DmDwiVMG70hn6A/IzJbWP2awll:7vdgBtK+YPBD/VMG79A/IzBWP2awll
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T192551226BA4083F2D85105745729C7E62E3F7CB65B12CEC372C9222C6D316C1A776BA7
sha3_384: 0c6ea66e343b7221a8366e19819e11e4688021fd4f4011d4bdba73da129b123a55d132bdc359e04f530032f16f5966bc
ep_bytes: e8563e0000e97ffeffff3b0db8df5200
timestamp: 2019-01-10 17:16:21

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Microsoft Office Word
FileVersion: 12.0.4518.1014
InternalName: WinWord
LegalCopyright: © 2006 Microsoft Corporation. All rights reserved.
LegalTrademarks1: Microsoft® is a registered trademark of Microsoft Corporation.
LegalTrademarks2: Windows® is a registered trademark of Microsoft Corporation.
OriginalFilename: WinWord.exe
ProductName: 2007 Microsoft Office system
ProductVersion: 12.0.4518.1014
Translation: 0x0000 0x04e4

Mikey.113610 (B) also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Mikey.113610
SkyhighBehavesLike.Win32.Generic.tc
McAfeeGenericRXLH-OM!5B02789974E5
Cylanceunsafe
VIPREGen:Variant.Mikey.113610
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0052ee471 )
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_100% (D)
ArcabitTrojan.Mikey.D1BBCA
SymantecSMG.Heur!gen
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/TrojanDropper.Agent.RPR
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Bskd-9753126-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Mikey.113610
NANO-AntivirusTrojan.Win32.Zusy.fbpsjd
AvastWin32:Evo-gen [Trj]
TencentMalware.Win32.Gencirc.10bf58c6
EmsisoftGen:Variant.Mikey.113610 (B)
F-SecureTrojan.TR/Crypt.ZPACK.Gen2
DrWebTrojan.MulDrop7.62214
ZillyaDropper.Agent.Win32.250978
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.5b02789974e562c2
SophosTroj/Agent-BAII
SentinelOneStatic AI – Malicious PE
JiangminBackdoor.Generic.atoc
VaristW32/S-940fb6f7!Eldorado
AviraTR/Crypt.ZPACK.Gen2
MAXmalware (ai score=85)
Antiy-AVLTrojan/Win32.AGeneric
Kingsoftmalware.kb.a.1000
XcitiumTrojWare.Win32.Salgorea.RPR@7tcxjx
MicrosoftTrojan:Win32/Salgorea.VRR!MTB
ZoneAlarmHEUR:Backdoor.Win32.Generic
GDataGen:Variant.Mikey.113610
GoogleDetected
AhnLab-V3Trojan/Win.Salgorea.R620249
VBA32Trojan.MulDrop
ALYacGen:Variant.Mikey.113610
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
ZonerTrojan.Win32.110286
RisingTrojan.Agent!1.B332 (CLASSIC)
IkarusTrojan.Win32.Salgorea
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.YLR!tr
BitDefenderThetaGen:NN.ZexaF.36792.s13@aOxl6Loi
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.d18ac1
DeepInstinctMALICIOUS

How to remove Mikey.113610 (B)?

Mikey.113610 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment