Risk

RiskTool.Win32.SecurityXPloded removal instruction

Malware Removal

The RiskTool.Win32.SecurityXPloded is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What RiskTool.Win32.SecurityXPloded virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Authenticode signature is invalid

How to determine RiskTool.Win32.SecurityXPloded?


File Info:

name: B48B60BF1B54F68BDF9C.mlw
path: /opt/CAPEv2/storage/binaries/3db61b1b06c79972f391aca7c90bba9caf5b33f1315042069355a5d6956117b4
crc32: C5511486
md5: b48b60bf1b54f68bdf9ce90741fc8ed1
sha1: ec927a00a6a8e8be6722b15413bf8c33b0f06dee
sha256: 3db61b1b06c79972f391aca7c90bba9caf5b33f1315042069355a5d6956117b4
sha512: ae4a79fffe92771d60ce9da28de1aee757933f9011cc21bae6307e9009fbdd7135b6ea3e6866300b82275e897a3f299e3c1b9ccf1e3443e03109dd0e58bc8b9a
ssdeep: 12288:OOkoJB+Qkh7Zo3CAyY4udg9tqBFRFHiN8nc8JwbVu5+OO8A1uNqiimiGv:BRoW3CAyY47ziRFH/cRbk5+OsYoqr
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T112151258B7E34B27D4420931752393F21771FDD10E50AA1BDEC5BE2E3C7A5CA0A7A21A
sha3_384: 252f08aec23d36f8e1e98c43c95cad8a9340565fceb613b72afc78d409a9b06932fe608b28c2076c3d54b01c1e1d1a7d
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-12-05 22:50:52

Version Info:

Comments:
CompanyName: SecurityXploded
FileDescription: Free Windows Password Recovery Software
FileVersion: 2.6
LegalCopyright: Copyright © 2007-2014 SecurityXploded, All rights reserved
LegalTrademarks:
ProductName: WindowsPasswordKracker
ProductVersion: 2.6
SpecialBuild:
Translation: 0x0409 0x04e4

RiskTool.Win32.SecurityXPloded also known as:

BkavW32.AIDetectMalware
ZillyaTrojan.ServStart.Win32.7269
K7AntiVirusTrojan ( 0048ce261 )
K7GWTrojan ( 0048ce261 )
Elasticmalicious (moderate confidence)
APEXMalicious
Kasperskynot-a-virus:HEUR:RiskTool.Win32.SecurityXPloded.gen
SophosGeneric Reputation PUA (PUA)
IkarusRiskware.Win32.PassDumper
Antiy-AVLGrayWare/Win32.InstallMonetizer.an
ZoneAlarmnot-a-virus:HEUR:RiskTool.Win32.SecurityXPloded.gen
MalwarebytesRiskWare.SecurityXploded
RisingTrojan.Generic@AI.99 (RDML:O8sX7ZLKvaqecu/kdjzwZA)
CrowdStrikewin/grayware_confidence_90% (D)

How to remove RiskTool.Win32.SecurityXPloded?

RiskTool.Win32.SecurityXPloded removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment