Malware

How to remove “Generic.Mulinex.259DE1A7”?

Malware Removal

The Generic.Mulinex.259DE1A7 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Mulinex.259DE1A7 virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • Empties the Recycle Bin, indicative of ransomware
  • Uses suspicious command line tools or Windows utilities

How to determine Generic.Mulinex.259DE1A7?


File Info:

crc32: 476855BA
md5: 6d0d8c4c03614023848d7f882cfce16d
name: 6D0D8C4C03614023848D7F882CFCE16D.mlw
sha1: b6c3673f9db9ce45e8904132e1d7b61ed26ece00
sha256: 68659eb478f2a64c738a3bff6e1842fc1910af8fac43769feb707b2605914f12
sha512: 18a248575ee728f67293498f653b83a50dfe25f8e6baf41d762efb3dd72ff6bcade20a2118e8f935468bcf1b5d18373fa97bc0a9757c68ee37a4c7157f2459e0
ssdeep: 12288:7rWfN3TrQ/g3iK5iiWjnyOymhwiAAsvYciSdsaNOm9hOLKbMxUQ29:7if1gTKETHsOesaLTOLKbMr29
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 1.0.1735.2103
InternalName: NoteBook.exe
FileVersion: 1.0.1735.2103
CompanyName: AnikaSoft
LegalTrademarks:
Comments: Designed by Anika
ProductName:
ProductVersion: 1.0.1735.2103
FileDescription: Notebook.NET
OriginalFilename: NoteBook.exe

Generic.Mulinex.259DE1A7 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Mulinex.259DE1A7
FireEyeGeneric.mg.6d0d8c4c03614023
CAT-QuickHealTrojan.Generic.8500
ALYacGeneric.Mulinex.259DE1A7
CylanceUnsafe
SangforMalware
BitDefenderGeneric.Mulinex.259DE1A7
Cybereasonmalicious.c03614
BitDefenderThetaGen:NN.ZexaF.34804.KmLfaGBLmThb
CyrenW32/Trojan.CLL.gen!Eldorado
SymantecMiner.XMRig
TotalDefenseWin32/Oflwr.A!crypt
BaiduWin32.Trojan.Farfli.e
APEXMalicious
ClamAVMultios.Coinminer.Miner-6781728-2
Kasperskynot-a-virus:HEUR:RiskTool.Win32.BitMiner.gen
NANO-AntivirusTrojan.Win32.Injuke.iiofbb
AvastWin32:CoinMiner-M [Trj]
Ad-AwareGeneric.Mulinex.259DE1A7
SophosTroj/Agent-BCPO
F-SecureHeuristic.HEUR/AGEN.1137355
DrWebTrojan.BtcMine.3404
ZillyaTrojan.Injuke.Win32.15611
EmsisoftTrojan.CoinMiner (A)
SentinelOneStatic AI – Malicious PE – Cryptominer
JiangminTrojan.Miner.nrc
MaxSecureTrojan.Malware.300983.susgen
AviraHEUR/AGEN.1137355
MAXmalware (ai score=86)
Antiy-AVLGrayWare/Win32.FlyStudio.a
MicrosoftTrojan:Win32/Wacatac.D6!ml
ArcabitGeneric.Mulinex.259DE1A7
ZoneAlarmnot-a-virus:HEUR:RiskTool.Win32.BitMiner.gen
GDataGeneric.Mulinex.259DE1A7
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Coinminer.R328898
Acronissuspicious
McAfeeGenericRXAA-AA!6D0D8C4C0361
VBA32BScope.Trojan.Dynamer
MalwarebytesRiskWare.BitCoinMiner
ESET-NOD32a variant of Win32/CoinMiner.BUF
RisingBackdoor.Agent!1.B7E4 (RDMK:cmRtazrG1D8aScB4uVu+/WHjcvUV)
YandexTrojan.GenAsa!CnhHeVv4fes
IkarusTrojan.Win32.CoinMiner
eGambitUnsafe.AI_Score_99%
FortinetW32/QQPass.ELG!tr.pws
AVGWin32:CoinMiner-M [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_70% (D)

How to remove Generic.Mulinex.259DE1A7?

Generic.Mulinex.259DE1A7 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment