Virus

Virus.Win32.Xpaj removal instruction

Malware Removal

The Virus.Win32.Xpaj is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Virus.Win32.Xpaj virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Virus.Win32.Xpaj?


File Info:

name: 59559DA4B05987ED37CC.mlw
path: /opt/CAPEv2/storage/binaries/28a49cc33589469ed4d3e4a5dd29dd3c8b49ca02ae86f40b93f773dfc5770f90
crc32: 4561EB79
md5: 59559da4b05987ed37cc7233130e0893
sha1: f12797e2729426cffc97a790a79ea856caf8118c
sha256: 28a49cc33589469ed4d3e4a5dd29dd3c8b49ca02ae86f40b93f773dfc5770f90
sha512: 7f65f646dc818910d8f7d768655ad7cdd01fb6f339386642375bae7fafb5758573bd99e063d398049f333e381802a90fbef620f0a3e6c772bc188b831d9c113c
ssdeep: 6144:Q1REE0AhHG2dfKPBdvHH7vziNu6TT6WeVEzEKlSw1rOt9pdYamXnrdbMKw:DRAhm2dSlnUuvuEu15OLpdNIrd4D
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10184F1C3F44D9194E9B60930583E8C194A5BBE5D0798282F36CB3F5E1FB72C25267A87
sha3_384: 7ca3a74082dfe69892c4a8decc604667daffd64ec06ecf7c8cf9da84bbae05141fda757a905c6a0d9b05188f25a0a246
ep_bytes: e87e020000e9d9fdffffcccccccccccc
timestamp: 1994-12-11 12:30:52

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Internet Low-Mic Utility Tool
FileVersion: 11.00.17134.1 (WinBuild.160101.0800)
InternalName: ielowutil.exe
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: ielowutil.exe
ProductName: Internet Explorer
ProductVersion: 11.00.17134.1
Translation: 0x0409 0x04b0

Virus.Win32.Xpaj also known as:

BkavW32.XpajA.PE
LionicVirus.Win32.Xpaj.n!c
Elasticmalicious (high confidence)
MicroWorld-eScanWin32.XPaj.C
FireEyeGeneric.mg.59559da4b05987ed
CAT-QuickHealW32.Xpaj.C
SkyhighW32/Xpaj.b
McAfeeW32/Xpaj.b
SangforVirus.Win32.Xpaj.Vanh
K7AntiVirusVirus ( 700000051 )
K7GWVirus ( 700000051 )
Cybereasonmalicious.4b0598
BitDefenderThetaAI:FileInfector.9D6E7E7C0C
SymantecW32.Xpaj.B
ESET-NOD32Win32/Goblin.D.Gen
APEXMalicious
TrendMicro-HouseCallPE_XPAJ.A
ClamAVBC.Win.Trojan.Xpaj-7
KasperskyVirus.Win32.Xpaj.gen
BitDefenderWin32.XPaj.C
NANO-AntivirusVirus.Win32.Xpaj.blcbg
AvastWin32:Xpaj
TencentVirus.Win32.Xpaj.tt
EmsisoftWin32.XPaj.C (B)
BaiduWin32.Virus.Xpaj.a
F-SecureMalware.W32/Xpaj.C
DrWebWin32.Xpaj.1
VIPREWin32.XPaj.C
TrendMicroPE_XPAJ.A
SophosMal/Xpaj-B
IkarusVirus.Win32.Goblin
JiangminWin32/Xpaj.Gen
GoogleDetected
AviraW32/Xpaj.C
VaristW32/Xpaj.A
Antiy-AVLVirus/Win32.Xpaj.gen
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitWin32.XPaj.C
ZoneAlarmVirus.Win32.Xpaj.gen
GDataWin32.XPaj.C
CynetMalicious (score: 100)
ALYacWin32.XPaj.C
MAXmalware (ai score=89)
Cylanceunsafe
PandaW32/Xpaj.b
SentinelOneStatic AI – Suspicious PE
MaxSecureVirus.Xpaj.Gen
FortinetW32/Xpaj.B
AVGWin32:Xpaj
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_70% (W)
alibabacloudVirus:Win/Goblin.D

How to remove Virus.Win32.Xpaj?

Virus.Win32.Xpaj removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment