Malware

About “Mikey.120563 (B)” infection

Malware Removal

The Mikey.120563 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mikey.120563 (B) virus can do?

  • Performs HTTP requests potentially not found in PCAP.
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Emumerates physical drives
  • Attempts to modify proxy settings
  • Touches a file containing cookies, possibly for information gathering
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Mikey.120563 (B)?


File Info:

name: DB8715B403C7A4203A3D.mlw
path: /opt/CAPEv2/storage/binaries/992db788ab6561283c9d98d2176cf059865147c84558a9f43146fb5685ee5f00
crc32: A02B3255
md5: db8715b403c7a4203a3d1337054154bb
sha1: 4350ba79e74f3cf18f5856bf04ce14d1e0e459b3
sha256: 992db788ab6561283c9d98d2176cf059865147c84558a9f43146fb5685ee5f00
sha512: d510b56288cd84812d01ce598300015c876c7fe9aec7f1567149ffadc2239763a9cb4a223756a03fd78eab29cdee1bea7f068c0391575dabf08944540d086a15
ssdeep: 49152:gfxmxCoqerg87fMS2mDUUhm2+eOyv8Wq/g2MDR6kGo29ETyPb6zP:gfx6CoU8oS2p92++q
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A3C5BF26B74E9072D5B25030671DE76305A875321B6A50CBF3C5AF2E29F06D3B63AE07
sha3_384: 7d9c0f8612f06266299a3a7713b8563018aa81bc19b6904d1327f8d0802309d7c78d652833c0cad6bcdcc08b90b2ad0e
ep_bytes: e85e040000e980feffff558bec5156ff
timestamp: 2018-08-11 18:23:33

Version Info:

0: [No Data]

Mikey.120563 (B) also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Mikey.120563
FireEyeGeneric.mg.db8715b403c7a420
CAT-QuickHealTrojan.Skeeyah.S3293683
McAfeeSoftcnapp
Cylanceunsafe
SangforTrojan.Win32.Save.a
K7AntiVirusAdware ( 005631a71 )
AlibabaMalware:Win32/km_2ec7f54.None
K7GWAdware ( 005631a71 )
Cybereasonmalicious.9e74f3
BitDefenderThetaGen:NN.ZexaF.36350.LAW@ayZN1Znj
CyrenW32/S-2a1c663c!Eldorado
SymantecPUA.Downloader
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Softcnapp.BC potentially unwanted
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Mikey.120563
AvastWin32:MalwareX-gen [Trj]
TencentTrojan.Win32.Generic.e
SophosSoftcnapp (PUA)
F-SecureHeuristic.HEUR/AGEN.1319114
DrWebAdware.Softcnapp.92
VIPREGen:Variant.Mikey.120563
TrendMicroTROJ_GEN.R002C0PHA23
McAfee-GW-EditionBehavesLike.Win32.Generic.vh
EmsisoftGen:Variant.Mikey.120563 (B)
IkarusPUA.Softcnapp
GDataGen:Variant.Mikey.120563
JiangminTrojanDownloader.Adload.voc
AviraHEUR/AGEN.1319114
Antiy-AVLGrayWare/Win32.Softcnapp
XcitiumApplication.Win32.AdWare.Softcnapp.D@7wjo8g
ArcabitTrojan.Mikey.D1D6F3
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftProgram:Win32/Wacapew.C!ml
GoogleDetected
AhnLab-V3PUP/Win32.Helper.R233980
VBA32BScope.Adware.Puwaders
ALYacGen:Variant.Mikey.120563
MAXmalware (ai score=89)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0PHA23
RisingAdware.Downloader!1.BBEC (CLASSIC)
YandexTrojan.GenAsa!j9wp91EzKUE
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/Softcnapp
AVGWin32:MalwareX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/grayware_confidence_100% (W)

How to remove Mikey.120563 (B)?

Mikey.120563 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment