Malware

Generic.Mulinex.9248A9CD information

Malware Removal

The Generic.Mulinex.9248A9CD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Mulinex.9248A9CD virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • A process attempted to delay the analysis task by a long amount of time.
  • Empties the Recycle Bin, indicative of ransomware
  • Uses suspicious command line tools or Windows utilities

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Mulinex.9248A9CD?


File Info:

crc32: 6768F3FA
md5: 35b8c4bf69dd69f36af7b8859235fb46
name: 35B8C4BF69DD69F36AF7B8859235FB46.mlw
sha1: 61834f1e8b800bbdd8ab9732992810ddb54a64bb
sha256: 786ba3eaca391d112242591df6bc86a5c4c7b90ce1dcecadda4980d32b6d005b
sha512: 0c534542c515e5cceb1cef75d2a8d1c4fb9d59f71903a7504f1cf49c0ccf984a994d4ddde6f21effbe5633579fec5366caad9ec479fc0f0d98d998c5c73c7abd
ssdeep: 12288:drWfN3TrQ/g3iK5iiWjnyOymhwiAAsvYciSdsaNolSbycDNXiG5tc9:dif1gTKETHsOesayS+INHc9
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 1.0.1735.2103
InternalName: NoteBook.exe
FileVersion: 1.0.1735.2103
CompanyName: AnikaSoft
LegalTrademarks:
Comments: Designed by Anika
ProductName:
ProductVersion: 1.0.1735.2103
FileDescription: Notebook.NET
OriginalFilename: NoteBook.exe

Generic.Mulinex.9248A9CD also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Mulinex.9248A9CD
FireEyeGeneric.mg.35b8c4bf69dd69f3
CAT-QuickHealTrojan.Generic.8500
ALYacGeneric.Mulinex.9248A9CD
MalwarebytesRiskWare.BitCoinMiner
VIPRETrojan.Win32.Generic!BT
K7AntiVirusTrojan ( 005246d51 )
BitDefenderGeneric.Mulinex.9248A9CD
K7GWTrojan ( 005246d51 )
Cybereasonmalicious.f69dd6
BitDefenderThetaGen:NN.ZexaF.34804.KmLfaCHnVPfb
CyrenW32/Trojan.CLL.gen!Eldorado
SymantecMiner.XMRig
TotalDefenseWin32/Oflwr.A!crypt
BaiduWin32.Trojan.Farfli.e
APEXMalicious
AvastWin32:CoinMiner-M [Trj]
ClamAVMultios.Coinminer.Miner-6781728-2
KasperskyTrojan.Win32.Injuke.dowp
NANO-AntivirusTrojan.Win32.Injuke.iiofbb
TencentMalware.Win32.Gencirc.10ce326d
Ad-AwareGeneric.Mulinex.9248A9CD
SophosML/PE-A + Troj/Agent-BCPO
ComodoTrojWare.Win32.Agent.OSCF@5rs7jr
F-SecureHeuristic.HEUR/AGEN.1137355
DrWebTrojan.BtcMine.3404
ZillyaTrojan.Injuke.Win32.15611
McAfee-GW-EditionArtemis!Trojan
EmsisoftTrojan.CoinMiner (A)
IkarusTrojan.Win32.CoinMiner
JiangminTrojan.Miner.nrc
AviraHEUR/AGEN.1137355
Antiy-AVLGrayWare/Win32.FlyStudio.a
MicrosoftTrojan:Script/Phonzy.A!ml
GridinsoftTrojan.Win32.CoinMiner.oa!s2
ArcabitGeneric.Mulinex.9248A9CD
ZoneAlarmTrojan.Win32.Injuke.dowp
GDataGeneric.Mulinex.9248A9CD
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Agent.C4307832
Acronissuspicious
McAfeeGenericRXAA-AA!35B8C4BF69DD
MAXmalware (ai score=86)
VBA32BScope.Trojan.Dynamer
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/CoinMiner.BUF
RisingBackdoor.Agent!1.B7E4 (RDMK:cmRtazppoTR2amFZLsNS7nF30FTP)
YandexTrojan.GenAsa!CnhHeVv4fes
SentinelOneStatic AI – Malicious PE – Cryptominer
eGambitUnsafe.AI_Score_99%
FortinetW32/QQPass.ELG!tr.pws
AVGWin32:CoinMiner-M [Trj]
CrowdStrikewin/malicious_confidence_70% (D)

How to remove Generic.Mulinex.9248A9CD?

Generic.Mulinex.9248A9CD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment