Virus

Virus:Win32/Xpaj.K removal

Malware Removal

The Virus:Win32/Xpaj.K is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Virus:Win32/Xpaj.K virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Virus:Win32/Xpaj.K?


File Info:

name: 0008F693EDF8F5835094.mlw
path: /opt/CAPEv2/storage/binaries/3896f5b12f92612dabed99951a8aec3e5ef65b27c38a3d1aae504734993de78b
crc32: 5F80709B
md5: 0008f693edf8f5835094d204d9734c3e
sha1: 56c5fff8858b5d0c59dbebc084c7b02d2878f634
sha256: 3896f5b12f92612dabed99951a8aec3e5ef65b27c38a3d1aae504734993de78b
sha512: 36324940e32dfc671c5fd65055d15eb478364be3f2c451cf0dac4d5d1defdad54df03ae8fa8b499f56c66f4ca00f5bca8395b6ebff88e62c6fba60128da7e873
ssdeep: 1536:PL6QaSl59Mj9vd2OSXbvwsT75sbQbgIUS5D3GuXPXhVtNbk:PL/aSl59Mj9vWXbZp/+uXvv7bk
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1BE93E160B09348BBF0E091724AF9B677D569952124AFF7139301C87B3A35543DB38E6B
sha3_384: 36c0d67949222d9f3d53042691f52a3dc1ef9b27be9f7903876e707b6d1f2c730acc45225b547cc3c796d4ad3be3fd68
ep_bytes: 8bff558bec837d0c01750eff7508ff15
timestamp: 2008-04-14 17:03:00

Version Info:

CompanyName: Microsoft Corporation
FileDescription: NT Messenger Service
FileVersion: 5.1.2600.5512 (xpsp.080413-2113)
InternalName: msgsvc.dll
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: msgsvc.dll
ProductName: Microsoft® Windows® Operating System
ProductVersion: 5.1.2600.5512
Translation: 0x0409 0x04b0

Virus:Win32/Xpaj.K also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanWin32.XPaj.D.3
FireEyeGeneric.mg.0008f693edf8f583
CAT-QuickHealW32.XPaj.E
SkyhighW32/Xpaj.c
McAfeeW32/Xpaj.c
VIPREWin32.XPaj.D.3
SangforSuspicious.Win32.Save.a
K7AntiVirusVirus ( 700000051 )
AlibabaVirus:Win32/Goblin.e9bf9345
K7GWVirus ( 700000051 )
BaiduWin32.Virus.Xpaj.a
VirITWin32.XPAJ.A
SymantecW32.Xpaj.B
ESET-NOD32Win32/Goblin.E.Gen
TrendMicro-HouseCallPE_XPAJ.C
AvastWin32:Xpaj
KasperskyVirus.Win32.Xpaj.genc
BitDefenderWin32.XPaj.D.3
NANO-AntivirusVirus.Win32.Xpaj.blcbg
TencentVirus.Win32.Xpaj.tt
EmsisoftWin32.XPaj.D.3 (B)
F-SecureMalware.W32/Xpaj.D
DrWebWin32.Xpaj.1
TrendMicroPE_XPAJ.C
SophosMal/Xpaj-B
MAXmalware (ai score=67)
JiangminWin32/Xpaj.Gen
GoogleDetected
AviraW32/Xpaj.D
VaristW32/Xpaj.D
Antiy-AVLVirus/Win32.Xpaj.genc
KingsoftWin32.Infected.AutoInfector.a
MicrosoftVirus:Win32/Xpaj.K
XcitiumMalware@#34qxr4teflh1r
ArcabitWin32.XPaj.D.3
ZoneAlarmVirus.Win32.Xpaj.genc
GDataWin32.XPaj.D.3
CynetMalicious (score: 99)
BitDefenderThetaAI:FileInfector.85AF89100E
ALYacWin32.XPaj.D.3
VBA32Virus.Xpaj.81105
Cylanceunsafe
PandaW32/Xpaj.c
RisingVirus.Xpaj!8.3D0 (CLOUD)
IkarusVirus.Win32.Xpaj
MaxSecureVirus.Xpaj.Gen
FortinetW32/Xpaj.C
AVGWin32:Xpaj
DeepInstinctMALICIOUS
alibabacloudVirus:Win/Goblin.E

How to remove Virus:Win32/Xpaj.K?

Virus:Win32/Xpaj.K removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment