Malware

Generic.Mulinex.0BC652EE information

Malware Removal

The Generic.Mulinex.0BC652EE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Mulinex.0BC652EE virus can do?

  • At least one process apparently crashed during execution
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Presents an Authenticode digital signature
  • Dynamic (imported) function loading detected
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Generic.Mulinex.0BC652EE?


File Info:

name: 7B5E8B0036AC833C47A2.mlw
path: /opt/CAPEv2/storage/binaries/d3c0031f8e0f632f6e3ed2c374e507de44f4a8df4c5edbd80b1b7ca5524a9c8a
crc32: 08C348C9
md5: 7b5e8b0036ac833c47a2c9078b34929d
sha1: 36ae620f04a0781b60f7b992e8b4e2a32644f90c
sha256: d3c0031f8e0f632f6e3ed2c374e507de44f4a8df4c5edbd80b1b7ca5524a9c8a
sha512: 58d7f5f38c0b18f845b7a8a739d8e22b4e47df400cd41c15f1af730968f8cb9f157a595c1b841d3487529bb1223ae705e07063b8126d6a334cc7c03f495d789f
ssdeep: 12288:5+aSxLMlpJ7Qf5kikx+5FGBbozDijLhtXKHUo1LEuBeF:IhxglS5tkUMBbofi5tXK0aLjUF
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T139C4123BA20CC070F10C0931C5978E7AE63ABD59DEA28E1F39787F8C6D75260751969A
sha3_384: 438506bf51cea37a48e09e4fed0c8453439908a680204763329ed617a05c39aaee155ee5c9c773c9f7851559b610b6ea
ep_bytes: 60be00604d008dbe00b0f2ff5783cdff
timestamp: 2021-11-02 12:28:06

Version Info:

CompanyName: Babylon Software Ltd.
FileDescription: Babylon Setup SE
FileVersion: 10.1.0.0
InternalName: Setup Stub
LegalCopyright: Copyright © Babylon Software Ltd. 1997-2016
OriginalFilename: SetupStub.exe
ProductName: Babylon Setup
ProductVersion: 10.1.0.0
Translation: 0x0409 0x04b0

Generic.Mulinex.0BC652EE also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Mulinex.0BC652EE
CAT-QuickHealPUA.BitminRI.S9338387
ALYacGeneric.Mulinex.0BC652EE
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005246d51 )
K7GWTrojan ( 005246d51 )
Cybereasonmalicious.036ac8
BaiduWin32.Trojan.Farfli.e
CyrenW32/Trojan.CLL.gen!Eldorado
SymantecMiner.XMRig
ESET-NOD32a variant of Win32/CoinMiner.BUF
APEXMalicious
ClamAVMultios.Coinminer.Miner-6781728-2
Kasperskynot-a-virus:HEUR:RiskTool.Win32.BitMiner.gen
BitDefenderGeneric.Mulinex.0BC652EE
AvastWin32:CoinMiner-M [Trj]
TencentMalware.Win32.Gencirc.10cf875c
Ad-AwareGeneric.Mulinex.0BC652EE
SophosML/PE-A + Troj/Agent-BCPO
ComodoTrojWare.Win32.Agent.OSCF@5rs7jr
DrWebTrojan.Fakealert.59663
ZillyaTrojan.CoinMiner.Win32.40653
FireEyeGeneric.mg.7b5e8b0036ac833c
EmsisoftGeneric.Mulinex.0BC652EE (B)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.12FI8JT
JiangminTrojan.Miner.mmk
AviraHEUR/AGEN.1136186
MAXmalware (ai score=80)
Antiy-AVLTrojan/Generic.ASCommon.FA
MicrosoftTrojan:Script/Phonzy.C!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.CoinMiner.R452343
Acronissuspicious
McAfeeGenericRXAA-AA!7B5E8B0036AC
VBA32BScope.Trojan.Dynamer
MalwarebytesRiskWare.BitCoinMiner
RisingBackdoor.Agent!1.B7E4 (CLASSIC)
IkarusWorm.Win32.Nuj
eGambitUnsafe.AI_Score_99%
FortinetW32/CoinMiner.ELG!tr.pws
BitDefenderThetaGen:NN.ZexaF.34294.ImLfa8Cid6dj
AVGWin32:CoinMiner-M [Trj]
PandaTrj/GdSda.A
MaxSecureTrojan.Malware.300983.susgen

How to remove Generic.Mulinex.0BC652EE?

Generic.Mulinex.0BC652EE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment