Malware

Should I remove “Generic.Mulinex.9FF9807E”?

Malware Removal

The Generic.Mulinex.9FF9807E is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Mulinex.9FF9807E virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Expresses interest in specific running processes
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • A process attempted to delay the analysis task by a long amount of time.
  • Empties the Recycle Bin, indicative of ransomware
  • Uses suspicious command line tools or Windows utilities

How to determine Generic.Mulinex.9FF9807E?


File Info:

crc32: 97DD3E6B
md5: 5fd021ae5d8902884f64cb9dbd501d56
name: SQLAGENTIDC.exe
sha1: 67774ce993711f4c19cc14950ffb6f2017a7f358
sha256: a6d6fe6eac9b2e1dd1ab523e95dec37d76bf7a3250fb869672a0d249016e4bb3
sha512: 478450748dec62d3ba687343b8f034584eda06d7781709543f691b11b84a3666ee19240d47e6fb004d99e0108371842ad51775d538e2f1c9de2cdb1817b14d4c
ssdeep: 12288:QAsjmBQyLmzkOlzPvm0Ad2X9l2QL5Lag+VcKYwU15vNO7l:QHjYmzkS7Nl245mg+owmNO7l
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyright (C) 2015 CHINA CITIC BANK.
InternalName: update.exe
FileVersion: 1.2.0.0720
CompanyName: x4e2dx4fe1x94f6x884c
Comments: x4e2dx4fe1x94f6x884cx7f51x94f6x4f34x4fa3
ProductName: update.exe
ProductVersion: 1.2.0.0720
FileDescription: x7f51x94f6x4f34x4fa3x5347x7ea7x7a0bx5e8f
OriginalFilename: update.exe
Translation: 0x0804 0x03a8

Generic.Mulinex.9FF9807E also known as:

BkavW32.AIDetectVM.malware2
DrWebTrojan.BtcMine.3404
MicroWorld-eScanGeneric.Mulinex.9FF9807E
FireEyeGeneric.mg.5fd021ae5d890288
CAT-QuickHealPUA.BitminRI.S9338387
ALYacGeneric.Mulinex.9FF9807E
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
K7AntiVirusTrojan ( 00561c1b1 )
BitDefenderGeneric.Mulinex.9FF9807E
K7GWTrojan ( 00561c1b1 )
Cybereasonmalicious.e5d890
BitDefenderThetaGen:NN.ZexaF.34100.HmKfaaa8E2ij
F-ProtW32/Trojan.CLL.gen!Eldorado
SymantecMiner.XMRig
APEXMalicious
ClamAVWin.Malware.Midie-7357494-0
GDataGeneric.Mulinex.9FF9807E
KasperskyTrojan-Downloader.Win32.Bitmin.xwy
AvastWin32:CoinMiner-M [Trj]
RisingBackdoor.Agent!1.B7E4 (RDMK:cmRtazrJjHMYpbCGO/JZDyHpOyxa)
Ad-AwareGeneric.Mulinex.9FF9807E
EmsisoftGeneric.Mulinex.9FF9807E (B)
F-SecureHeuristic.HEUR/AGEN.1046199
ZillyaTrojan.CoinMiner.Win32.25455
Invinceaheuristic
Trapminemalicious.high.ml.score
SophosTroj/Agent-BCPO
IkarusTrojan.Win32.CoinMiner
CyrenW32/Trojan.CLL.gen!Eldorado
JiangminTrojanDownloader.Bitmin.mz
eGambitUnsafe.AI_Score_99%
AviraHEUR/AGEN.1046199
MAXmalware (ai score=80)
Antiy-AVLTrojan[Downloader]/Win32.Upatre
Endgamemalicious (moderate confidence)
ArcabitGeneric.Mulinex.9FF9807E
ZoneAlarmTrojan-Downloader.Win32.Bitmin.xwy
MicrosoftTrojan:Win32/Coinminer.PA!MTB
AhnLab-V3Malware/Win32.RL_Coinminer.R328898
Acronissuspicious
VBA32BScope.Trojan.CMY3U
MalwarebytesRiskWare.BitCoinMiner
ESET-NOD32a variant of Win32/CoinMiner.BUF
YandexTrojan.CoinMiner!aW1qAi1rDo4
SentinelOneDFI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/QQWare.A!tr
WebrootW32.Malware.Gen
AVGWin32:CoinMiner-M [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_80% (D)

How to remove Generic.Mulinex.9FF9807E?

Generic.Mulinex.9FF9807E removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment