Malware

Win32.XPaj.B removal

Malware Removal

The Win32.XPaj.B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32.XPaj.B virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Win32.XPaj.B?


File Info:

name: 7599A8561914EAC49164.mlw
path: /opt/CAPEv2/storage/binaries/83ba0c5d719a6c31df35e2f857365c0aceee0dd526ae917ae015c7d9d47ed4b2
crc32: 5FAB5D6A
md5: 7599a8561914eac4916430e00c2cc1ee
sha1: 4723ea4b082be5fdb68d8699da13f7a182fe6257
sha256: 83ba0c5d719a6c31df35e2f857365c0aceee0dd526ae917ae015c7d9d47ed4b2
sha512: b94c536d433a6e2bf43708574b98b390fdfcd0fd8bdc9d95d168c54415fbfe5dd27eab9de39b4bf20e5db4e0a491a14695561d4a1b137f6befad320fcc2c9133
ssdeep: 3072:vlZuUjVFRTN1hCXn0iwMwHyaXnTcRJCcPsB8M+Z1gT266RbSE/duBEgYCmoVhih1:1VGwMwpcPw8hIuWihpeR6
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T14A743903BA825934D58F467551B7AB338B380D22EF464B578780F9297DB31E0A76B7C8
sha3_384: 6f94b561ed2347b076ea84a2a40596b9db58f87ca24b6aa1ff62ef8e7c587d3c77069a688701eadb955a8a20874205d9
ep_bytes: 5355568b74241485f657b80100000075
timestamp: 1998-10-07 22:46:17

Version Info:

Comments: Intel Indeo® video 5.10 Quick Compressor
CompanyName: Intel Corporation.
FileDescription: Intel Indeo® video 5.10 Quick Compressor
FileVersion: R.5.10.63.2.48
InternalName: ir50_qc
LegalCopyright: Copyright © 1994-1997 Intel Corp.
OriginalFilename: ir50_qc.dll
ProductName: Intel Indeo® video 5.10 Quick Compressor
ProductVersion: R.5.10.63.2.48
Translation: 0x0409 0x04b0

Win32.XPaj.B also known as:

LionicVirus.Win32.Xpaj.n!c
DrWebWin32.Goblin
MicroWorld-eScanWin32.XPaj.B
FireEyeWin32.XPaj.B
CAT-QuickHealW32.Xpaj.A
SkyhighBehavesLike.Win32.Generic.fm
Cylanceunsafe
VIPREWin32.XPaj.B
SangforVirus.Win32.Xpaj.V9mv
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaVirus:Win32/Goblin.55449b73
K7GWVirus ( 005ab3521 )
K7AntiVirusVirus ( 005ab3521 )
ArcabitWin32.XPaj.B
BitDefenderThetaAI:FileInfector.EA694EEA0C
SymantecW32.Xpaj.C
Elasticmalicious (high confidence)
ESET-NOD32Win32/Goblin.A.Gen
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Trojan.Xpaj-2
KasperskyVirus.Win32.Goblin.gen
BitDefenderWin32.XPaj.B
NANO-AntivirusVirus.Win32.Goblin.bcufsv
AvastWin32:Goblin
TencentVirus.Win32.Goblin.ka
EmsisoftWin32.XPaj.B (B)
F-SecureMalware.W32/Xpaj.A
BaiduWin32.Virus.Xpaj.gen
TrendMicroPE_XPAJ.A-1
SophosMal/Xpaj-A
IkarusVirus.Win32.Xpaj
VaristW32/Goblin.A.gen!Eldorado
AviraW32/Xpaj.A
Antiy-AVLVirus/Win32.Goblin.a
MicrosoftVirus:Win32/Xpaj.gen!A
ZoneAlarmVirus.Win32.Goblin.gen
GDataWin32.XPaj.B
GoogleDetected
AhnLab-V3Win32/Xpaj
VBA32Virus.Goblin.2521
ALYacWin32.XPaj.B
MAXmalware (ai score=88)
MalwarebytesXpaj.Virus.FileInfector.DDS
TrendMicro-HouseCallPE_XPAJ.A-1
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Goblin.A
AVGWin32:Goblin
DeepInstinctMALICIOUS

How to remove Win32.XPaj.B?

Win32.XPaj.B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment