Trojan

About “Trojan.Win32.Mucc.pid” infection

Malware Removal

The Trojan.Win32.Mucc.pid is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Mucc.pid virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Chinese (Traditional)
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.Win32.Mucc.pid?


File Info:

crc32: E443F855
md5: 68e529bd105020001ff35eb6e9b11ae0
name: 68E529BD105020001FF35EB6E9B11AE0.mlw
sha1: 27e7572f7875c94fc90f49e3b79a360e004833ee
sha256: cc9f0cc34fe4433774014c8130dcfb11f39bd5038f0ce86099f84d314b461334
sha512: 42fa18f1d8fb391a07b646e1eb357ddeb1f16a38e6d0804cad5cdf32f684a8daf8046d386f3187d1a7d1fd16f24b41e8691ded78a3dfaf9f7758412465ada45b
ssdeep: 3072:K8skjNgWTIP9cejR27PgdALKbZn+Ja+FZJvchNgWTIP3kwB:lsIFq9cL7PgAWZ+ZF/chFq3b
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0404 0x04b0
LegalCopyright: AfterBreak
InternalName: repremise
FileVersion: 1.00
CompanyName: AfterBreak
LegalTrademarks: AfterBreak
Comments: AfterBreak
ProductName: MindLess
ProductVersion: 1.00
FileDescription: AfterBreak MindLess
OriginalFilename: repremise.exe

Trojan.Win32.Mucc.pid also known as:

K7AntiVirusTrojan ( 0057fea61 )
LionicTrojan.Win32.Mucc.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CAT-QuickHealTrojan.PE_EXE
ALYacTrojan.GenericKD.37299142
CylanceUnsafe
ZillyaTrojan.Mucc.Win32.2118
SangforTrojan.Win32.Mucc.pid
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Injector.d08e7e88
K7GWTrojan ( 0057fea61 )
CyrenW32/Trojan.VZRH-6040
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/TrojanDownloader.Agent.FCI
ZonerTrojan.Win32.120539
APEXMalicious
AvastOther:Malware-gen [Trj]
KasperskyTrojan.Win32.Mucc.pid
BitDefenderTrojan.GenericKD.37299142
NANO-AntivirusTrojan.Win32.Mucc.ixvydc
MicroWorld-eScanTrojan.GenericKD.37299142
TencentWin32.Trojan.Mucc.Wsan
Ad-AwareTrojan.GenericKD.37299142
SophosMal/Generic-R + Troj/Zbot-PLQ
ComodoMalware@#1yuejpupmuchh
BitDefenderThetaGen:NN.ZevbaF.34266.zm0@aSJxlNdb
VIPRETrojan.Win32.Generic!BT
TrendMicroTrojanSpy.Win32.MUCC.AC
McAfee-GW-EditionBehavesLike.Win32.DistTrack.gt
FireEyeTrojan.GenericKD.37299142
EmsisoftTrojan.GenericKD.37299142 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Mucc.cgd
AviraTR/Injector.thkqj
Antiy-AVLTrojan/Generic.ASMalwS.34AB07F
KingsoftWin32.Troj.Mucc.p.(kcloud)
MicrosoftTrojan:Win32/Tiggre!rfn
ArcabitTrojan.Generic.D23923C6
GDataWin32.Trojan.Agent.HNUAT4
AhnLab-V3Trojan/Win.Fareit.C4626359
McAfeeRDN/Generic.dx
MAXmalware (ai score=87)
VBA32TScope.Trojan.VB
PandaTrj/WLT.G
TrendMicro-HouseCallTrojanSpy.Win32.MUCC.AC
YandexTrojan.Mucc!5mgOuCID9j8
IkarusTrojan.VB.Crypt
MaxSecureTrojan.Malware.119940405.susgen
FortinetW32/Mucc.PID!tr
AVGOther:Malware-gen [Trj]

How to remove Trojan.Win32.Mucc.pid?

Trojan.Win32.Mucc.pid removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment