Malware

Should I remove “Mikey.150280”?

Malware Removal

The Mikey.150280 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mikey.150280 virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Mikey.150280?


File Info:

name: FA364301F30C68269F11.mlw
path: /opt/CAPEv2/storage/binaries/efe4413e111c11585b8714cdb60beef443bd9f10cbc7f31ccc730b36732d8b51
crc32: 7CAFD181
md5: fa364301f30c68269f11406b43ecbf46
sha1: 396ccf57fbd7052bb55c2dd44a947ae3237bf517
sha256: efe4413e111c11585b8714cdb60beef443bd9f10cbc7f31ccc730b36732d8b51
sha512: 35c623b7003256d52b258865384ab0617aab217fa0d8f5e71602097ed9c8aba318175a054c0b56c4bd887eeb9aff0aec3da2599660274458110cfe2b1714039e
ssdeep: 98304:Rmzsms3gYHLiCTiYaoIuVSYL3zxOLtQFo/O++JN07tv3KquEgSjyZAU68oHKoQCM:AzsfwBNIVSUDxOLN/9SMwPSk
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19BC68D42F3A640A5E8A38578465A6337E672BC843B2953CB1270A73E1F73BD05A3D735
sha3_384: a0c888377bb1d21d252d1686386ed4ad90b5f561f168fcb1d3fa111dfb87986c62de40cf76ae3d05fb271fabb989acb4
ep_bytes: 558bec6aff684012440068f0eb400064
timestamp: 2023-08-14 13:14:21

Version Info:

CompanyName: Kaspersky
FileDescription: ??????????? [21.3.10.391.0.584.0 (a.b)]
FileVersion: 21.3.10.391
LegalCopyright: © 2021 AO Kaspersky Lab
LegalTrademarks: ????????????????????
ProductName: ???????????
ProductVersion: 21.3.10.391
InternalName: Setup
OriginalFilename: Setup.exe
Translation: 0x0409 0x04b0

Mikey.150280 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.DInvoke.4!c
Elasticmalicious (moderate confidence)
MicroWorld-eScanGen:Variant.Mikey.150280
FireEyeGen:Variant.Mikey.150280
ALYacGen:Variant.Mikey.150280
Cylanceunsafe
ZillyaTrojan.DInvoke.Win32.573
SangforDownloader.Win32.Dinvoke.Vqc2
K7AntiVirusTrojan-Downloader ( 005aa3811 )
AlibabaTrojanDownloader:Win32/DInvoke.4eaaf764
K7GWTrojan-Downloader ( 005aa3811 )
BitDefenderThetaGen:NN.ZexaF.36662.@t0@a46XmjiP
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/TrojanDownloader.Agent.HDG
APEXMalicious
KasperskyHEUR:Trojan.Win32.DInvoke.gen
BitDefenderGen:Variant.Mikey.150280
AvastWin32:TrojanX-gen [Trj]
TencentMalware.Win32.Gencirc.10bf15d7
EmsisoftGen:Variant.Mikey.150280 (B)
F-SecureTrojan.TR/Dldr.Agent.evtsf
VIPREGen:Variant.Mikey.150280
McAfee-GW-EditionArtemis
Trapminemalicious.high.ml.score
GDataGen:Variant.Mikey.150280
AviraTR/Dldr.Agent.evtsf
Antiy-AVLTrojan/Win32.PossibleThreat
ArcabitTrojan.Mikey.D24B08
ZoneAlarmHEUR:Trojan.Win32.DInvoke.gen
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.Generic.C5471661
McAfeeArtemis!FA364301F30C
MAXmalware (ai score=88)
VBA32Trojan.MTA.01004
MalwarebytesCrypt.Trojan.Malicious.DDS
TrendMicro-HouseCallTROJ_GEN.R002H0CHJ23
RisingTrojan.DInvoke!8.16EDB (TFE:5:AxElmeL59GU)
MaxSecureTrojan.Malware.196319825.susgen
FortinetPossibleThreat.MU
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Mikey.150280?

Mikey.150280 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment