Malware

What is “Generic.Mulinex.C568D2CF”?

Malware Removal

The Generic.Mulinex.C568D2CF is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Mulinex.C568D2CF virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Expresses interest in specific running processes
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • A process attempted to delay the analysis task by a long amount of time.
  • Empties the Recycle Bin, indicative of ransomware
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Mulinex.C568D2CF?


File Info:

crc32: 23CD1405
md5: 80a51a529de790e3c8949190864ff8f7
name: SQLAGENTIEC.exe
sha1: 0ead152d41070b8efedea659b38133a5e07c5100
sha256: 95cb5547361b19af6c2c6b95096a1935fcfca694f8d0462cd5ad20f06c5b657d
sha512: 54ab9d8a766452543a32ab2ee02a17965886ebf7870d617d16cf815a44e4891c9865e8425be885c3cbd89d9a36d9c09a398a889ece02a1296c9e7a34bc0e74cc
ssdeep: 12288:lKJmS7ZV5hTHe3RZL/3x0GHJeTaW00s1NxeNtYMa2rVcI:lKL7ZV5Z+3n3PHJdgsVAtY
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyright (C) 2012
MIMEType: application/x-npAssistComm-plugin
InternalName: npAssistComm
FileVersion: 1, 0, 0, 1
ProductName: npAssistComm Dynamic Link Library
ProductVersion: 1, 0, 0, 1
FileDescription: npAssistComm Dynamic Link Library
OriginalFilename: npAssistComm.dll
Translation: 0x0409 0x04e4

Generic.Mulinex.C568D2CF also known as:

BkavW32.AIDetectVM.malware2
MicroWorld-eScanGeneric.Mulinex.C568D2CF
FireEyeGeneric.mg.80a51a529de790e3
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
BitDefenderGeneric.Mulinex.C568D2CF
Cybereasonmalicious.29de79
BaiduWin32.Trojan.Farfli.e
CyrenW32/Trojan.CLL.gen!Eldorado
TotalDefenseWin32/Oflwr.A!crypt
APEXMalicious
ClamAVMultios.Coinminer.Miner-6781728-2
GDataGeneric.Mulinex.C568D2CF
Kasperskynot-a-virus:HEUR:RiskTool.Win32.BitMiner.gen
AvastWin32:CoinMiner-M [Trj]
RisingBackdoor.Agent!1.B7E4 (RDMK:cmRtazowYJrsPDmXTwbvgO6lRkG7)
Endgamemalicious (moderate confidence)
SophosTroj/Agent-BCPO
F-SecureHeuristic.HEUR/AGEN.1126575
Invinceaheuristic
Trapminemalicious.high.ml.score
EmsisoftGeneric.Mulinex.C568D2CF (B)
IkarusWorm.Win32.Nuj
F-ProtW32/Trojan.CLL.gen!Eldorado
WebrootW32.Malware.Gen
AviraHEUR/AGEN.1126575
Antiy-AVLGrayWare/Win32.FlyStudio.a
ArcabitGeneric.Mulinex.C568D2CF
ZoneAlarmnot-a-virus:HEUR:RiskTool.Win32.BitMiner.gen
MicrosoftTrojan:Win32/Wacatac.C!ml
Acronissuspicious
VBA32BScope.Trojan.CMY3U
MAXmalware (ai score=80)
Ad-AwareGeneric.Mulinex.C568D2CF
MalwarebytesRiskWare.BitCoinMiner
ESET-NOD32a variant of Win32/CoinMiner.BUF
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_100%
FortinetW32/QQWare.A!tr
BitDefenderThetaGen:NN.ZexaF.34108.GmKfaOJaRUpj
AVGWin32:CoinMiner-M [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_80% (D)
MaxSecureTrojan.Malware.300983.susgen

How to remove Generic.Mulinex.C568D2CF?

Generic.Mulinex.C568D2CF removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment