Malware

Generic.Mulinex.B5F2AD3C removal

Malware Removal

The Generic.Mulinex.B5F2AD3C is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Mulinex.B5F2AD3C virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Expresses interest in specific running processes
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • A process attempted to delay the analysis task by a long amount of time.
  • Empties the Recycle Bin, indicative of ransomware
  • Uses suspicious command line tools or Windows utilities

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Mulinex.B5F2AD3C?


File Info:

crc32: 00A38BF9
md5: 4b52b1b6d1c7315a60d3ca9e11b65971
name: SQLAGENTIDC.exe
sha1: f7e6fd8b545582ba957cb5ccb094f5ad50b2a199
sha256: 8f0bb630ed366cfac2ae0ee99fda5d19a76562079e087f6b7ac30253427fbe53
sha512: fe8b2435f238df82132081a9de29d1b3e25dc2cdeac7da872cf2b8263c6947dc38dcfd1c6a5dfcbf96a066e8997ce526344287870c28b96fa7d4648b121378da
ssdeep: 12288:7AsjmBQyLmzkOlzPvm0Ad2X9l2QL5Lag+VcKYwU15vNO7l:7HjYmzkS7Nl245mg+owmNO7l
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyright (C) 2015 CHINA CITIC BANK.
InternalName: update.exe
FileVersion: 1.2.0.0720
CompanyName: x4e2dx4fe1x94f6x884c
Comments: x4e2dx4fe1x94f6x884cx7f51x94f6x4f34x4fa3
ProductName: update.exe
ProductVersion: 1.2.0.0720
FileDescription: x7f51x94f6x4f34x4fa3x5347x7ea7x7a0bx5e8f
OriginalFilename: update.exe
Translation: 0x0804 0x03a8

Generic.Mulinex.B5F2AD3C also known as:

BkavW32.AIDetectVM.malware2
MicroWorld-eScanGeneric.Mulinex.B5F2AD3C
FireEyeGeneric.mg.4b52b1b6d1c7315a
CAT-QuickHealPUA.BitminRI.S9338387
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
K7AntiVirusTrojan ( 00561c1b1 )
BitDefenderGeneric.Mulinex.B5F2AD3C
K7GWTrojan ( 00561c1b1 )
Cybereasonmalicious.6d1c73
F-ProtW32/Trojan.CLL.gen!Eldorado
SymantecMiner.XMRig
APEXMalicious
AvastWin32:CoinMiner-M [Trj]
ClamAVWin.Malware.Midie-7357494-0
GDataGeneric.Mulinex.B5F2AD3C
KasperskyTrojan-Downloader.Win32.Bitmin.xwy
RisingBackdoor.Agent!1.B7E4 (RDMK:cmRtazrJjHMYpbCGO/JZDyHpOyxa)
Endgamemalicious (moderate confidence)
EmsisoftGeneric.Mulinex.B5F2AD3C (B)
F-SecureHeuristic.HEUR/AGEN.1046199
DrWebTrojan.BtcMine.3404
ZillyaTrojan.CoinMiner.Win32.25455
Invinceaheuristic
Trapminemalicious.high.ml.score
SophosTroj/Agent-BCPO
IkarusTrojan.Win32.CoinMiner
CyrenW32/Trojan.CLL.gen!Eldorado
JiangminTrojanDownloader.Bitmin.mz
WebrootW32.Malware.Gen
AviraHEUR/AGEN.1046199
MAXmalware (ai score=87)
Antiy-AVLTrojan[Downloader]/Win32.Upatre
ArcabitGeneric.Mulinex.B5F2AD3C
ZoneAlarmTrojan-Downloader.Win32.Bitmin.xwy
MicrosoftTrojan:Win32/Coinminer.PA!MTB
AhnLab-V3Malware/Win32.RL_Coinminer.R328898
Acronissuspicious
VBA32BScope.Trojan.CMY3U
ALYacGeneric.Mulinex.B5F2AD3C
Ad-AwareGeneric.Mulinex.B5F2AD3C
MalwarebytesRiskWare.BitCoinMiner
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/CoinMiner.BUF
YandexTrojan.CoinMiner!aW1qAi1rDo4
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/QQWare.A!tr
BitDefenderThetaGen:NN.ZexaF.34100.HmKfaSiffaaj
AVGWin32:CoinMiner-M [Trj]
CrowdStrikewin/malicious_confidence_80% (D)
MaxSecureTrojan.Malware.300983.susgen

How to remove Generic.Mulinex.B5F2AD3C?

Generic.Mulinex.B5F2AD3C removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment