Malware

Mal/Generic-R + W64/Expiro-AX malicious file

Malware Removal

The Mal/Generic-R + W64/Expiro-AX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-R + W64/Expiro-AX virus can do?

  • The binary likely contains encrypted or compressed data.

How to determine Mal/Generic-R + W64/Expiro-AX?


File Info:

crc32: EBDB83EE
md5: 1ee6f1996fdb2d955dee6efe1439a7d9
name: 1EE6F1996FDB2D955DEE6EFE1439A7D9.mlw
sha1: 46df3769620fbb17687ca7aaebdca523239129e9
sha256: c7b0a142b5beea2148172636b07756aca91a215f208e04c5c9e3c2b57a842273
sha512: 5eb8958c9d5cb204b9362c1139cbd431f1267dd1bb68a2541af5a9df99136270cef71323d22a9a1ca6572036a4917deb6db7d2937746f24db23bd61d318205fa
ssdeep: 24576:suEmh/EdzlNjO4XXmTPVvO9s2PWlhObcQStxPZaPNxoqpUtOGD:l/ETI4HmTPVvOS2OlhVQStVZaPNBpUc
type: PE32+ executable (GUI) x86-64, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
InternalName: SearchIndexer.exe
FileVersion: 7.0.17134.1304 (WinBuild.160101.0800)
CompanyName: Microsoft Corporation
ProductName: Windowsxae Search
ProductVersion: 7.0.17134.1304
FileDescription: Microsoft Windows Search Indexer
OriginalFilename: SearchIndexer.exe
Translation: 0x0409 0x04b0

Mal/Generic-R + W64/Expiro-AX also known as:

K7AntiVirusVirus ( 00535e4a1 )
LionicVirus.Win64.Expiro.n!c
Elasticmalicious (high confidence)
DrWebWin64.Expiro.132
CynetMalicious (score: 100)
ALYacWin64.Expiro.Gen.6
CylanceUnsafe
SangforVirus.Win64.Expiro.gen
CrowdStrikewin/malicious_confidence_70% (W)
AlibabaVirus:Win64/Expiro.2ee6b658
K7GWVirus ( 00535e4a1 )
CyrenW64/Expiro.AH.gen!Eldorado
SymantecTrojan.Gen.6
ESET-NOD32a variant of Win64/Expiro.CO
APEXMalicious
AvastFileRepMalware
ClamAVWin.Virus.Expiro-9891987-0
KasperskyHEUR:Virus.Win64.Expiro.gen
BitDefenderWin64.Expiro.Gen.6
MicroWorld-eScanWin64.Expiro.Gen.6
TencentWin64.Virus.Expiro.Edoo
Ad-AwareWin64.Expiro.Gen.6
SophosMal/Generic-R + W64/Expiro-AX
TrendMicroVirus.Win64.EXPIRO.MR
McAfee-GW-EditionBehavesLike.Win64.Virus.th
FireEyeGeneric.mg.1ee6f1996fdb2d95
EmsisoftWin64.Expiro.Gen.6 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Bingoml.akq
AviraTR/Patched.Gen
Antiy-AVLTrojan/Generic.ASVirus.30B
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataWin64.Expiro.Gen.6
MAXmalware (ai score=81)
TrendMicro-HouseCallVirus.Win64.EXPIRO.MR
IkarusVirus.Win64.Expiro
MaxSecurevirus.win64.expiro.gen
FortinetW64/Expiro.BS
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Mal/Generic-R + W64/Expiro-AX?

Mal/Generic-R + W64/Expiro-AX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment