Malware

Win32.XPaj.B information

Malware Removal

The Win32.XPaj.B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32.XPaj.B virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Win32.XPaj.B?


File Info:

name: AA092371511F8555BC13.mlw
path: /opt/CAPEv2/storage/binaries/c53e268348af8d6734e9413402feee2718983c732a4d91c018bcedcc91e8fb8e
crc32: F8B33937
md5: aa092371511f8555bc13726a3e6c77a3
sha1: 82e39a29b761d7f34f2f8ebf7deb62fdb5dbb7b7
sha256: c53e268348af8d6734e9413402feee2718983c732a4d91c018bcedcc91e8fb8e
sha512: 569ecfedd1ca3892506686e44e3e26b4e90e0cc1eeea475a86ce43b5fdbbd33a2baa88533c6763f015a7d34a329a4b6f95e89911ea6a8e22d3b096a487071736
ssdeep: 3072:IXpLCmdRbSkemqbiI3QYCmo0jihpytVSTICXBJFec3tvEXthdt:IJCuvkRihpyIFWndt
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T143E39E423E82547AD2C906B137DB9B77DE3468329D28C3D3EB90AE25FA714C1767B604
sha3_384: b4c2cd0a8fb29a0344638745c66a6a82d5329b75f331c7c755e8dbc7116b31481782c19f52ad6ac3f5df2d1b56d9bf01
ep_bytes: 8bff558bec837d0c017505e845b70000
timestamp: 2068-05-09 10:41:09

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Microsoft ODBC Desktop Driver Pack 3.5
FileVersion: 10.0.18362.1 (WinBuild.160101.0800)
InternalName: odbcji32.dll
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: odbcji32.dll
ProductName: Microsoft® Windows® Operating System
ProductVersion: 10.0.18362.1
Translation: 0x0409 0x04b0

Win32.XPaj.B also known as:

BkavW32.AIDetectMalware
LionicVirus.Win32.Xpaj.n!c
DrWebWin32.Goblin
MicroWorld-eScanWin32.XPaj.B
FireEyeGeneric.mg.aa092371511f8555
CAT-QuickHealW32.Xpaj.A
SkyhighBehavesLike.Win32.Trojan.cc
McAfeeTrojan-FVNN!AA092371511F
Cylanceunsafe
SangforVirus.Win32.Xpaj.Vtv2
K7AntiVirusVirus ( 005ab3521 )
AlibabaVirus:Win32/Goblin.eb1da5aa
K7GWVirus ( 005ab3521 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaAI:FileInfector.EA694EEA0C
SymantecW32.Xpaj.C
Elasticmalicious (high confidence)
ESET-NOD32Win32/Goblin.A.Gen
CynetMalicious (score: 99)
APEXMalicious
ClamAVWin.Trojan.Xpaj-2
KasperskyVirus.Win32.Goblin.gen
BitDefenderWin32.XPaj.B
NANO-AntivirusVirus.Win32.Goblin.bcufsv
AvastWin32:Goblin
TencentVirus.Win32.Goblin.ka
SophosMal/Xpaj-A
F-SecureMalware.W32/Xpaj.A
BaiduWin32.Virus.Xpaj.gen
VIPREWin32.XPaj.B
TrendMicroPE_XPAJ.A-1
EmsisoftWin32.XPaj.B (B)
SentinelOneStatic AI – Malicious PE
GDataWin32.XPaj.B
VaristW32/Xpaj.A.gen!Eldorado
AviraW32/Xpaj.A
Antiy-AVLVirus/Win32.Goblin.a
ArcabitWin32.XPaj.B
ZoneAlarmVirus.Win32.Goblin.gen
MicrosoftVirus:Win32/Xpaj.gen!A
GoogleDetected
AhnLab-V3Win32/Xpaj
VBA32Virus.Goblin.2521
ALYacWin32.XPaj.B
MAXmalware (ai score=85)
MalwarebytesXpaj.Virus.FileInfector.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallPE_XPAJ.A-1
IkarusVirus.Win32.Xpaj
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Goblin.A
AVGWin32:Goblin
DeepInstinctMALICIOUS

How to remove Win32.XPaj.B?

Win32.XPaj.B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment