Malware

Win32:Xpirat-B [Inf] (file analysis)

Malware Removal

The Win32:Xpirat-B [Inf] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32:Xpirat-B [Inf] virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32:Xpirat-B [Inf]?


File Info:

crc32: 43B51A81
md5: bb6385a7b54f1a89f61fdb687af9a100
name: BB6385A7B54F1A89F61FDB687AF9A100.mlw
sha1: 1506e34ed75f072db3a482afa461917b89fbb1ce
sha256: 42db8ac9a79d1eca10a1d0071b63c30be4f9be55aa14d968b9d5cfa0a6518418
sha512: 72fbaac71f951b595d200c001341afdd2024ffaae15f5a7f77e5d3dfe7cc09a0a1b7c19c1cb99a4028a053a3c6849bf03e6949913d0122b76d0d574edd1a2201
ssdeep: 98304:s4lFsjyHGEhTlAGK4vIXlkN3VC1azAfPlo:s4JhrK4vIXlk9VwXlo
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32:Xpirat-B [Inf] also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0056cc351 )
Elasticmalicious (high confidence)
DrWebTrojan.PackedENT.124
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Wacatac.S15862760
ALYacGen:Variant.Cerbu.75485
CylanceUnsafe
CrowdStrikewin/malicious_confidence_70% (D)
K7GWTrojan ( 0056cc351 )
Cybereasonmalicious.7b54f1
CyrenW32/S-0cb2f1a4!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GOGM
APEXMalicious
AvastWin32:Xpirat-B [Inf]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Cerbu.75485
NANO-AntivirusVirus.Win32.Gen.ccmw
MicroWorld-eScanGen:Variant.Cerbu.75485
Ad-AwareGen:Variant.Cerbu.75485
SophosML/PE-A + Troj/AGent-BFHO
BitDefenderThetaAI:Packer.8DF8E8A21E
McAfee-GW-EditionBehavesLike.Win32.Generic.wc
FireEyeGeneric.mg.bb6385a7b54f1a89
EmsisoftGen:Variant.Cerbu.75485 (B)
AviraTR/Crypt.EPACK.Gen2
eGambitUnsafe.AI_Score_94%
Antiy-AVLTrojan/Generic.ASBOL.C639
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Variant.Cerbu.75485
AhnLab-V3Trojan/Win32.Kryptik.R346633
McAfeeGenericRXLP-KK!BB6385A7B54F
MAXmalware (ai score=82)
VBA32BScope.Trojan.PackedENT
MalwarebytesTrojan.Crypt.Generic
PandaTrj/Genetic.gen
RisingMalware.Heuristic!ET#100% (RDMK:cmRtazq4r5NzsR7bqf1cn4vQUoKR)
IkarusTrojan.Win32.Crypt
FortinetW32/Kryptik.GOGM!tr
AVGWin32:Xpirat-B [Inf]

How to remove Win32:Xpirat-B [Inf]?

Win32:Xpirat-B [Inf] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment