Malware

Generic.Mulinex.72DE9C63 information

Malware Removal

The Generic.Mulinex.72DE9C63 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Mulinex.72DE9C63 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Uses Windows utilities for basic functionality
  • Deletes its original binary from disk
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Creates a copy of itself
  • Uses suspicious command line tools or Windows utilities

How to determine Generic.Mulinex.72DE9C63?


File Info:

crc32: 005CC5DF
md5: 5f636aff978730424c1a4b246cdbf0a7
name: 5F636AFF978730424C1A4B246CDBF0A7.mlw
sha1: 1af5504c6c9031fb455f4c759607beadebdfd41c
sha256: 8b559ca3ec0b5d0352a01c450a47f39a28fe7dddf92ba3df026a9e875ac22a6a
sha512: b69bb8a170b6151836e7345b71b9d772b0ffc10a33d2721ff90e0d5cfdd86beeb1c3725eed44c352793ad2849f7ad161488b28216696b4b09d13427f6ddf8bdf
ssdeep: 12288:8ORHEQOe3gWZ5J8mtApiOyo70d4ki68B:8OvOeQEnSiW02H68B
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyright (C) 2021
InternalName: AAAA
FileVersion: 1, 0, 0, 1
CompanyName:
LegalTrademarks:
ProductName: Application AAAA
ProductVersion: 1, 0, 0, 1
FileDescription: Application MFC AAAA
OriginalFilename: AAAA.EXE
Translation: 0x040c 0x04b0

Generic.Mulinex.72DE9C63 also known as:

K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
DrWebBackDoor.Spy.422
CynetMalicious (score: 99)
ALYacDeepScan:Generic.Mulinex.72DE9C63
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (W)
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.f97873
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Farfli.CYQ
APEXMalicious
AvastWin32:MiscX-gen [PUP]
KasperskyUDS:Trojan.Win32.Generic
BitDefenderDeepScan:Generic.Mulinex.72DE9C63
NANO-AntivirusTrojan.Win32.Mlw.iucbro
MicroWorld-eScanDeepScan:Generic.Mulinex.72DE9C63
TencentMalware.Win32.Gencirc.10ce48bd
Ad-AwareDeepScan:Generic.Mulinex.72DE9C63
SophosTroj/Farfli-DW
ComodoPacked.Win32.MUPX.Gen@24tbus
BitDefenderThetaGen:NN.ZexaF.34170.zmKfauOZ33me
TrendMicroBKDR_ZEGOST.SM34
McAfee-GW-EditionGenericRXOD-IK!56D282D258B9
FireEyeGeneric.mg.5f636aff97873042
EmsisoftDeepScan:Generic.Mulinex.72DE9C63 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.gvvqu
AviraHEUR/AGEN.1101570
Antiy-AVLTrojan/Generic.ASMalwS.332E8B4
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataDeepScan:Generic.Mulinex.72DE9C63
AhnLab-V3Backdoor/Win.Zegost.R422117
McAfeeGenericRXAA-AA!5F636AFF9787
MAXmalware (ai score=80)
VBA32BScope.Backdoor.Farfli
MalwarebytesMalware.AI.4247993424
TrendMicro-HouseCallBKDR_ZEGOST.SM34
IkarusBackdoor.Win32.Zegost
FortinetRiskware/Farfli
AVGWin32:MiscX-gen [PUP]
Paloaltogeneric.ml

How to remove Generic.Mulinex.72DE9C63?

Generic.Mulinex.72DE9C63 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment