Malware

GenPack:Generic.Mulinex.2930E871 removal

Malware Removal

The GenPack:Generic.Mulinex.2930E871 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What GenPack:Generic.Mulinex.2930E871 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Executable file is packed/obfuscated with ASPack
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine GenPack:Generic.Mulinex.2930E871?


File Info:

name: E79B05C2A08A7A24A05B.mlw
path: /opt/CAPEv2/storage/binaries/b3cec3a010911c830ef963ca241b1937333fb9f0ea1c3d91f56bb7c0b54908cd
crc32: EE58F4FC
md5: e79b05c2a08a7a24a05bb1ef98233dfa
sha1: dde1fac61e6136130770d63650ffd6fc5cb3b85d
sha256: b3cec3a010911c830ef963ca241b1937333fb9f0ea1c3d91f56bb7c0b54908cd
sha512: 08b9e0a713adfae5806a97353c0f69f00324181750aec5af3dac544af2eb34065c1a6c394d0be4b74f208a84da3e2c3c0aa5c316650de421fe1a448d47c8ae41
ssdeep: 6144:LjAAsf+wLxktcGleI7zAUsFdn60gFKjONFaVAk5Z7h8v:nogjX4leMl8v
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16D544B32B5A0AB5FC467E33586DBDB6332BEB06073678363500C0C3A6E46BEA4D16755
sha3_384: 6a91f1396499bbac36b60afaa5d98a3dc46925c57ee2b16667940ba206ceff9ae73a9263c92f464c8464d184bda48081
ep_bytes: 60e803000000e9eb045d4555c3e80100
timestamp: 2014-10-23 10:48:32

Version Info:

0: [No Data]

GenPack:Generic.Mulinex.2930E871 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Farfli.m!c
MicroWorld-eScanGenPack:Generic.Mulinex.2930E871
ClamAVWin.Trojan.Generic-6305873-0
FireEyeGeneric.mg.e79b05c2a08a7a24
CAT-QuickHealBackdoor.Zegost.17282
McAfeeGenericRXAA-FA!E79B05C2A08A
CylanceUnsafe
VIPREGenPack:Generic.Mulinex.2930E871
SangforBackdoor.Win32.Farfli.8
K7AntiVirusTrojan ( 0055e3e41 )
AlibabaBackdoor:Win32/Farfli.89a1c5da
K7GWTrojan ( 0055e3e41 )
Cybereasonmalicious.2a08a7
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Farfli.BBB
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyBackdoor.Win32.Farfli.hpj
BitDefenderGenPack:Generic.Mulinex.2930E871
NANO-AntivirusTrojan.Win32.Crypted.dilemh
AvastWin32:BackdoorX-gen [Trj]
TencentMalware.Win32.Gencirc.10b81cd9
Ad-AwareGenPack:Generic.Mulinex.2930E871
EmsisoftGenPack:Generic.Mulinex.2930E871 (B)
ComodoMalware@#sax69mpqf1di
ZillyaBackdoor.Farfli.Win32.1044
TrendMicroBKDR_ZEGOST.SM40
McAfee-GW-EditionGenericRXGB-NK!CA6125FA937B
Trapminemalicious.high.ml.score
SophosMal/Behav-294
SentinelOneStatic AI – Suspicious PE
GDataGenPack:Generic.Mulinex.2930E871
JiangminBackdoor/Hupigon.ayjb
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Generic.ASMalwS.26E9
ArcabitGenPack:Generic.Mulinex.2930E871
MicrosoftTrojan:Win32/Skeeyah.A!rfn
GoogleDetected
BitDefenderThetaGen:NN.ZexaF.34754.rGZba0Taesgb
ALYacGenPack:Generic.Mulinex.2930E871
MAXmalware (ai score=89)
VBA32Backdoor.Farfli
MalwarebytesMalware.Heuristic.1003
TrendMicro-HouseCallBKDR_ZEGOST.SM40
RisingMalware.Undefined!8.C (TFE:5:OxPo2RhSGE)
YandexBackdoor.Farfli!2zOhGxX27Qg
IkarusTrojan.Win32.Farfli
MaxSecureTrojan.Malware.7175197.susgen
FortinetW32/Farfli.AJY!tr
AVGWin32:BackdoorX-gen [Trj]
PandaTrj/Genetic.gen

How to remove GenPack:Generic.Mulinex.2930E871?

GenPack:Generic.Mulinex.2930E871 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment