Malware

What is “Mikey.150643”?

Malware Removal

The Mikey.150643 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mikey.150643 virus can do?

  • Performs HTTP requests potentially not found in PCAP.
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Mikey.150643?


File Info:

name: D33534805BF88F212E41.mlw
path: /opt/CAPEv2/storage/binaries/70887593f9dda393c23df359865cd620119f180541a8db28c8597f164444e3a5
crc32: BB95C20A
md5: d33534805bf88f212e41fadb4515ae1d
sha1: 2f46d623fb29b202482b017169d50aae5002de14
sha256: 70887593f9dda393c23df359865cd620119f180541a8db28c8597f164444e3a5
sha512: ea2ff11e7d16dba21a0870c2e8c6a71de40e2bd7c5ea9ab5704524061051eb9fa70fbacd74614b8578d907a7b6b8e2c3fa5e7850016665ceb8238c85d3f782dd
ssdeep: 3072:CkrIBL0ZdU8oZIDD3F+NpQFDSHkwlG5Azjj94EmfwLYgvryvctGtI:jrkL0ZG8oZIX87QNSHkw00XWEqy6Xt
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DC845B137620D4A2E551A3BA56A6173D7DB8875038B1C413FBECDD22BF705A1873BB0A
sha3_384: 660175892144ba55d4e5b3c8745c1e7c3b1b5b35b03b61010a9bf0355fad5a379facfddc3ab11519aa4dfb221876537d
ep_bytes: 558bec6aff68c89e440068d41e430064
timestamp: 2014-04-28 04:48:37

Version Info:

FileVersion: 1.2.3.128
ProductVersion: 1.2.3.128
CompanyName: Guang Dong Hong Tu
InternalName: gong si rengshi luru
LegalCopyright: guang dong HT 版权所有
LegalTrademarks: CHINA GD Hong Tu
OriginalFilename: Reng shi luru
ProductName: Guang Dong Hong Tu
FileDescription: rtgft regdf vvgtrh trh
Translation: 0x0409 0x0000

Mikey.150643 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanGen:Variant.Mikey.150643
ClamAVWin.Dropper.Tiggre-9845940-0
FireEyeGeneric.mg.d33534805bf88f21
ALYacGen:Variant.Mikey.150643
Cylanceunsafe
SangforTrojan.Win32.Save.BlackMoon
AlibabaTrojanPSW:Win32/QQPass.347dbb20
BaiduWin32.Trojan-PSW.QQPass.aa
VirITTrojan.Win32.Generic.AUUF
CyrenW32/BlackMoon.J.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/PSW.QQPass.NYJ
APEXMalicious
CynetMalicious (score: 100)
BitDefenderGen:Variant.Mikey.150643
NANO-AntivirusTrojan.Win32.Qqpass.drmuwk
AvastWin32:Malware-gen
TencentWin32.Trojan-PSW.2.Iqil
SophosGeneric Reputation PUA (PUA)
F-SecureHeuristic.HEUR/AGEN.1342484
DrWebTrojan.PWS.Qqpass.11077
VIPREGen:Variant.Mikey.150643
TrendMicroTROJ_GEN.R002C0PHO23
McAfee-GW-EditionGenericRXGA-NN!D33534805BF8
EmsisoftGen:Variant.Mikey.150643 (B)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan-Stealer.BlackMoon.D
AviraHEUR/AGEN.1342484
Antiy-AVLTrojan/Win32.Blamon.a
XcitiumApplication.Win32.BlackMoon.AI@822vgj
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3Trojan/Win32.Agent.R135839
McAfeeGenericRXGA-NN!D33534805BF8
MAXmalware (ai score=80)
VBA32BScope.Trojan.Inject
MalwarebytesGeneric.Malware/Suspicious
TrendMicro-HouseCallTROJ_GEN.R002C0PHO23
RisingMalware.Undefined!8.C (TFE:5:M2I29DkV4cI)
YandexTrojan.GenAsa!RZ4J1v5OIbY
IkarusTrojan-Downloader.Win32.Tiny
FortinetW32/CoinMiner.ESFJ!tr
BitDefenderThetaGen:NN.ZexaF.36350.xq0@aGU4pnbi
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Mikey.150643?

Mikey.150643 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment