Malware

Should I remove “Troj/Xtbl-EN”?

Malware Removal

The Troj/Xtbl-EN is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

What Troj/Xtbl-EN virus can do?

  • Unconventionial binary language: Russian
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine Troj/Xtbl-EN?


File Info:

crc32: 8114ACE0
md5: f75b295f7d9cb8a93f52056d40f33215
name: 2c.jpg
sha1: c1c0f50ed18d44e5a830ab32d6f3eab81ce16c01
sha256: ba1af457a27bc747747f601c62182ff7e3d773239612ac7a4ddf5f25868340b5
sha512: 239bb8c2a432f9c7a9f8f9d1313368954c02fce87b544e0f12195367065ad656f8659002493e72f381dbff34b072e5a6d11e8d658f6e64519f2b99b285c186bb
ssdeep: 12288:1WaClUE9Aew41GtdNlI+IIwB/npXzeKwThFOK/FEa1yHsCWQlonUWM94yf2F1lD:o9xw4WNlIzBhXLGFH6rVGlDL71l
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Xabitozefesaji. Pezamuhawumeb dayihariduca. Pobodiyayuta wicavakepiyepe femotofuv
InternalName: binokubina.exe
FileVersion: 28.0.0.46
Translation: 0x0419 0x0548

Troj/Xtbl-EN also known as:

DrWebTrojan.PWS.Stealer.27391
MicroWorld-eScanTrojan.GenericKD.32704491
FireEyeGeneric.mg.f75b295f7d9cb8a9
ALYacTrojan.Ransom.Shade
MalwarebytesTrojan.MalPack.GS
VIPRETrojan.Win32.Generic!BT
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.32704491
K7GWRiskware ( 0040eff71 )
TrendMicroTROJ_FRS.VSNW0CK19
BitDefenderThetaGen:NN.ZexaF.32250.7u0@am0dVBk
CyrenW32/Trojan.MIFM-1086
SymantecPacked.Generic.525
Paloaltogeneric.ml
GDataTrojan.GenericKD.32704491
KasperskyTrojan-Ransom.Win32.Shade.qiq
AlibabaTrojan:Win32/Shade.eebe359c
NANO-AntivirusTrojan.Win32.Stealer.ggzopv
AegisLabTrojan.Multi.Generic.4!c
RisingTrojan.Kryptik!1.BF08 (CLASSIC)
Ad-AwareTrojan.GenericKD.32704491
SophosTroj/Xtbl-EN
ComodoMalware@#1xn1lhl6agy16
F-SecureTrojan.TR/Crypt.XPACK.qqbwd
ZillyaTrojan.Shade.Win32.1154
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
IkarusTrojan.Win32.Crypt
WebrootW32.Trojan.Gen
AviraTR/Crypt.XPACK.qqbwd
Antiy-AVLTrojan[Ransom]/Win32.Shade
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D1F307EB
ZoneAlarmTrojan-Ransom.Win32.Shade.qiq
MicrosoftTrojan:Win32/CryptInject.CB!MTB
AhnLab-V3Trojan/Win32.Agent.R298720
Acronissuspicious
McAfeeRDN/Ransom
VBA32BScope.Trojan.Dynamer
CylanceUnsafe
ESET-NOD32Win32/Filecoder.Shade.A
TrendMicro-HouseCallTROJ_FRS.VSNW0CK19
SentinelOneDFI – Suspicious PE
FortinetW32/Kryptik.GYEF!tr
AVGWin32:MalwareX-gen [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_90% (W)
Qihoo-360Win32/Trojan.Ransom.a70

How to remove Troj/Xtbl-EN?

Troj/Xtbl-EN removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment