Malware

What is “Mikey.132788”?

Malware Removal

The Mikey.132788 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mikey.132788 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Behavioural detection: Executable code extraction – unpacking
  • Dynamic (imported) function loading detected
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Creates RWX memory
  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Oriya
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Detects Sandboxie through the presence of a library
  • Detects Avast Antivirus through the presence of a library
  • Checks the presence of disk drives in the registry, possibly for anti-virtualization

How to determine Mikey.132788?


File Info:

name: 676E1056587D27B94C7A.mlw
path: /opt/CAPEv2/storage/binaries/1133d41a5ad4777eb03647f49429d31c3457e2af64ca5d5ac991d0fb6c698769
crc32: CC764959
md5: 676e1056587d27b94c7a4fa517412fa5
sha1: 980d13922fe67e6fd485d50991ecf11ddaeaacfe
sha256: 1133d41a5ad4777eb03647f49429d31c3457e2af64ca5d5ac991d0fb6c698769
sha512: c05e2dde06ded8294b2d7231d699e5486ed3bc16312834bae54b203d685da544619790c7f7f870c59bbd907e0abee8ca9264d1419ee7c6de9d460602946c4a06
ssdeep: 6144:4wDILSkIMrWr+kcSaU5wyQ4sJGb7ITsqXigad:4uI+kIeYeyaJu7R
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1AF249DD176E2CD71C1A26D3248619BE59E7BB821E630550BF778B7AE1F7E3C04622312
sha3_384: 5bd0f3cf4dcfcd48d86161cfd820f68e7f9d3e1872f1a928ea89cb4a8ae631af55823f015559e9c972f3153e7a4f14b7
ep_bytes: e850440000e979feffffcccccccccccc
timestamp: 2020-12-16 05:06:47

Version Info:

InternalName: bomgpiaruci.iwa
Copyright: Copyrighz (C) 2021, fudkat
ProductVersion: 23.54.77.27
Translation: 0x0127 0x046a

Mikey.132788 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Mikey.132788
FireEyeGeneric.mg.676e1056587d27b9
ALYacGen:Variant.Fragtor.46790
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7GWHacktool ( 700007861 )
Cybereasonmalicious.22fe67
BitDefenderThetaGen:NN.ZexaF.34084.nu0@aeJ0TkHG
CyrenW32/Kryptik.FWV.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HNQL
KasperskyUDS:Trojan.Win32.Agent.gen
BitDefenderGen:Variant.Mikey.132788
AvastWin32:DropperX-gen [Drp]
Ad-AwareGen:Variant.Mikey.132788
EmsisoftGen:Variant.Mikey.132788 (B)
McAfee-GW-EditionBehavesLike.Win32.Generic.dh
SentinelOneStatic AI – Malicious PE
SophosML/PE-A + Troj/Krypt-BO
APEXMalicious
GDataGen:Variant.Mikey.132788
ArcabitTrojan.Mikey.D206B4
MicrosoftRansom:Win32/StopCrypt.MVK!MTB
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.MalPE.R457622
Acronissuspicious
McAfeeLockbit-FSWW!676E1056587D
MAXmalware (ai score=81)
VBA32BScope.TrojanDropper.Convagent
MalwarebytesTrojan.MalPack.GS
RisingMalware.Heuristic!ET#92% (RDMK:cmRtazpdK0+KCtG2SNalBamb0Smz)
IkarusTrojan-Ransom.StopCrypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.HNQD!tr
AVGWin32:DropperX-gen [Drp]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Mikey.132788?

Mikey.132788 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment