Malware

What is “Win32.VB.Pajetbin.B”?

Malware Removal

The Win32.VB.Pajetbin.B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32.VB.Pajetbin.B virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Uses Windows utilities for basic functionality
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Deletes executed files from disk
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

How to determine Win32.VB.Pajetbin.B?


File Info:

name: 636D50AADB5B2E67110D.mlw
path: /opt/CAPEv2/storage/binaries/8b67764c0b01c3fb42af929ee9f6c66c5b8a7a00ab7264cdc444141dad949c0b
crc32: 221AAC6A
md5: 636d50aadb5b2e67110d6d5f04fc20cb
sha1: 6b0dbc436ec465f675dcc448e3aab948ba32c9f4
sha256: 8b67764c0b01c3fb42af929ee9f6c66c5b8a7a00ab7264cdc444141dad949c0b
sha512: a51c374c7bbdedc673054dc42826a8fc13fb1e2315a960d7789555731e47b99763b620cf906c04cf91bff1925ca429848ce3fe27e4b068e0ec730b97cd13e10c
ssdeep: 6144:76Jl1vVZI69tUquYKqsHfphYa/7RTwBUDczbvG1gp+GYo:7SFiqHUfpCW7lbwzzWgp+GB
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T137D47D22B758E8CAD05186B48D27D6B46A213D326D2809CF7F50BB1F5DF23C2F951B26
sha3_384: 0fbf303eddf12d32758ba57627ff9c92d3835d922910cc2f63c07bd8e1e45d6b7ca942b29a5bbaf6aba6eca9ccf2a24c
ep_bytes: 681c384000e8eeffffff000000000000
timestamp: 2007-09-16 08:02:07

Version Info:

Translation: 0x0804 0x04b0
CompanyName: QWX SOFT
ProductName: pjtAwsVariantioner
FileVersion: 1.00
ProductVersion: 1.00
InternalName: MYSetup
OriginalFilename: MYSetup.exe

Win32.VB.Pajetbin.B also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Agent.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanWin32.VB.Pajetbin.B
ClamAVWin.Dropper.Pajetbin-7136160-0
FireEyeGeneric.mg.636d50aadb5b2e67
McAfeeGenericRXAA-AA!636D50AADB5B
Cylanceunsafe
VIPREWin32.VB.Pajetbin.B
K7AntiVirusTrojan ( 0050ce7a1 )
AlibabaTrojan:Win32/NewHeur.b16a32ea
K7GWTrojan ( 0050ce7a1 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaAI:Packer.267F552520
CyrenW32/Trojan.ZEGA-1026
SymantecML.Attribute.HighConfidence
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Agent.xaatqi
BitDefenderWin32.VB.Pajetbin.B
NANO-AntivirusTrojan.Win32.Click1.ftyavd
AvastWin32:TrojanX-gen [Trj]
TencentMalware.Win32.Gencirc.10b2d235
SophosTroj/AutoG-EA
DrWebTrojan.Click1.13370
ZillyaTrojan.Genome.Win32.24925
McAfee-GW-EditionBehavesLike.Win32.HLLPSoul.hm
Trapminesuspicious.low.ml.score
EmsisoftWin32.VB.Pajetbin.B (B)
SentinelOneStatic AI – Suspicious PE
GDataWin32.VB.Pajetbin.B
JiangminTrojan.Agent.cadl
Antiy-AVLTrojan/Win32.Agent
XcitiumMalware@#2bbojgh2g7ty3
ArcabitWin32.VB.Pajetbin.B
ZoneAlarmTrojan.Win32.Agent.xaatqi
MicrosoftTrojan:Win32/VB
GoogleDetected
AhnLab-V3Trojan/Win32.Kryptik.R284109
VBA32Trojan.Agent
ALYacWin32.VB.Pajetbin.B
MAXmalware (ai score=83)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
RisingTrojan.Agent!8.B1E (TFE:3:ws2iR1R9tqC)
IkarusBackdoor.Win32.VB
MaxSecureTrojan.Malware.74451695.susgen
FortinetW32/Genome.FQFO!tr
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.adb5b2
DeepInstinctMALICIOUS

How to remove Win32.VB.Pajetbin.B?

Win32.VB.Pajetbin.B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment