Malware

Generic.Mulinex.CE7B6524 (file analysis)

Malware Removal

The Generic.Mulinex.CE7B6524 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Mulinex.CE7B6524 virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • A process attempted to delay the analysis task by a long amount of time.
  • Empties the Recycle Bin, indicative of ransomware
  • Uses suspicious command line tools or Windows utilities

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Mulinex.CE7B6524?


File Info:

crc32: 4CF1D0C1
md5: 2b4fc3bb8bb229f2eea3f3803cc6be74
name: 2B4FC3BB8BB229F2EEA3F3803CC6BE74.mlw
sha1: 5b94226f19a8c99d60ffa2f680cf3e411a937b4d
sha256: 06143ba9eb69cac4b15d539d974f2ab6b4d4cd6cbd349af885062236f1909ddb
sha512: f99dbbf718dc3ae9118a0c28282030a2ae9fc7c751bbc9beaa82c5ad4d4daeaf820e18ee3b6981e87f5a579787659afe4eca37e1b11da27118a849af52dd7f96
ssdeep: 12288:1rWfN3TrQ/g3iK5iiWjnyOymhwiAAsvYciSdsaNolSbycDNXiG5tc9:1if1gTKETHsOesayS+INHc9
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 1.0.1735.2103
InternalName: NoteBook.exe
FileVersion: 1.0.1735.2103
CompanyName: AnikaSoft
LegalTrademarks:
Comments: Designed by Anika
ProductName:
ProductVersion: 1.0.1735.2103
FileDescription: Notebook.NET
OriginalFilename: NoteBook.exe

Generic.Mulinex.CE7B6524 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Mulinex.CE7B6524
FireEyeGeneric.mg.2b4fc3bb8bb229f2
CAT-QuickHealTrojan.Generic.8500
McAfeeGenericRXAA-AA!2B4FC3BB8BB2
CylanceUnsafe
SangforMalware
K7AntiVirusTrojan ( 005246d51 )
BitDefenderGeneric.Mulinex.CE7B6524
K7GWTrojan ( 005246d51 )
Cybereasonmalicious.b8bb22
BaiduWin32.Trojan.Farfli.e
SymantecMiner.XMRig
TotalDefenseWin32/Oflwr.A!crypt
APEXMalicious
ClamAVMultios.Coinminer.Miner-6781728-2
NANO-AntivirusTrojan.Win32.Injuke.iiofbb
RisingBackdoor.Agent!1.B7E4 (CLASSIC)
Ad-AwareGeneric.Mulinex.CE7B6524
EmsisoftTrojan.CoinMiner (A)
ComodoTrojWare.Win32.Agent.OSCF@5rs7jr
DrWebTrojan.BtcMine.3404
SophosML/PE-A + Troj/Agent-BCPO
IkarusTrojan.Win32.CoinMiner
JiangminTrojan.Miner.nrc
AviraHEUR/AGEN.1137355
Antiy-AVLGrayWare/Win32.FlyStudio.a
MicrosoftTrojan:Script/Phonzy.A!ml
GridinsoftTrojan.Win32.CoinMiner.oa!s2
ArcabitGeneric.Mulinex.CE7B6524
ZoneAlarmTrojan.Win32.Injuke.dowp
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Agent.C4307832
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34804.KmLfaqrbmjab
ALYacGeneric.Mulinex.CE7B6524
MalwarebytesRiskWare.BitCoinMiner
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/CoinMiner.BUF
TencentMalware.Win32.Gencirc.10ce326d
YandexTrojan.GenAsa!CnhHeVv4fes
SentinelOneStatic AI – Malicious PE – Cryptominer
eGambitUnsafe.AI_Score_99%
FortinetW32/QQPass.ELG!tr.pws
AVGWin32:CoinMiner-M [Trj]
AvastWin32:CoinMiner-M [Trj]
CrowdStrikewin/malicious_confidence_70% (D)

How to remove Generic.Mulinex.CE7B6524?

Generic.Mulinex.CE7B6524 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment