Malware

Should I remove “Generic.Mulinex.51E0BA96”?

Malware Removal

The Generic.Mulinex.51E0BA96 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Mulinex.51E0BA96 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Expresses interest in specific running processes
  • A process created a hidden window
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • A process attempted to delay the analysis task by a long amount of time.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Empties the Recycle Bin, indicative of ransomware
  • Uses suspicious command line tools or Windows utilities

How to determine Generic.Mulinex.51E0BA96?


File Info:

crc32: 80E8BA68
md5: 864466969198da96d80294c0050fe12a
name: SQLAGENTIDC.exe
sha1: f8b3151b3929662d3b90f0a1a78e41922e1d62b9
sha256: 1cbf3143f28f59434b951a3b5629c8b10b38b8c71f74f871d97289bed3662ad4
sha512: 078f1e346dac11a181cc091660365f649c1343e35f7fd77f16de5f78bb0af2b8350764a298f33872e33b1fae247375e5817dfa0c0114e2b99c6adca58b4de694
ssdeep: 12288:gAsjmBQyLmzkOlzPvm0Ad2X9l2QL5Lag+VcKYwU15vNO7l:gHjYmzkS7Nl245mg+owmNO7l
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyright (C) 2015 CHINA CITIC BANK.
InternalName: update.exe
FileVersion: 1.2.0.0720
CompanyName: x4e2dx4fe1x94f6x884c
Comments: x4e2dx4fe1x94f6x884cx7f51x94f6x4f34x4fa3
ProductName: update.exe
ProductVersion: 1.2.0.0720
FileDescription: x7f51x94f6x4f34x4fa3x5347x7ea7x7a0bx5e8f
OriginalFilename: update.exe
Translation: 0x0804 0x03a8

Generic.Mulinex.51E0BA96 also known as:

BkavW32.AIDetectVM.malware2
DrWebTrojan.BtcMine.3404
MicroWorld-eScanGeneric.Mulinex.51E0BA96
CAT-QuickHealPUA.BitminRI.S9338387
ALYacGeneric.Mulinex.51E0BA96
CylanceUnsafe
ZillyaTrojan.CoinMiner.Win32.25455
K7AntiVirusTrojan ( 00561c1b1 )
BitDefenderGeneric.Mulinex.51E0BA96
K7GWTrojan ( 00561c1b1 )
CrowdStrikewin/malicious_confidence_80% (D)
BitDefenderThetaGen:NN.ZexaF.34100.HmKfaOsJQ2oj
F-ProtW32/Trojan.CLL.gen!Eldorado
SymantecMiner.XMRig
ClamAVWin.Malware.Midie-7357494-0
GDataGeneric.Mulinex.51E0BA96
KasperskyTrojan-Downloader.Win32.Bitmin.xwy
Ad-AwareGeneric.Mulinex.51E0BA96
EmsisoftGeneric.Mulinex.51E0BA96 (B)
F-SecureHeuristic.HEUR/AGEN.1046199
VIPRETrojan.Win32.Generic!BT
Invinceaheuristic
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.864466969198da96
SophosTroj/Agent-BCPO
IkarusTrojan.Win32.CoinMiner
CyrenW32/Trojan.CLL.gen!Eldorado
JiangminTrojanDownloader.Bitmin.mz
WebrootW32.Malware.Gen
AviraHEUR/AGEN.1046199
MAXmalware (ai score=81)
Antiy-AVLTrojan[Downloader]/Win32.Upatre
Endgamemalicious (moderate confidence)
ArcabitGeneric.Mulinex.51E0BA96
ZoneAlarmTrojan-Downloader.Win32.Bitmin.xwy
MicrosoftTrojan:Win32/CoinMiner
AhnLab-V3Malware/Win32.RL_Coinminer.R328898
Acronissuspicious
VBA32BScope.Trojan.CMY3U
MalwarebytesRiskWare.BitCoinMiner
PandaTrj/GdSda.A
APEXMalicious
ESET-NOD32a variant of Win32/CoinMiner.BUF
RisingBackdoor.Agent!1.B7E4 (RDMK:cmRtazrJjHMYpbCGO/JZDyHpOyxa)
YandexTrojan.CoinMiner!aW1qAi1rDo4
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/QQWare.A!tr
AVGWin32:CoinMiner-M [Trj]
AvastWin32:CoinMiner-M [Trj]
MaxSecureTrojan.Malware.300983.susgen

How to remove Generic.Mulinex.51E0BA96?

Generic.Mulinex.51E0BA96 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment