Adware

BScope.Adware.ArcadeWeb information

Malware Removal

The BScope.Adware.ArcadeWeb is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.Adware.ArcadeWeb virus can do?

  • Presents an Authenticode digital signature
  • A process attempted to delay the analysis task.
  • A process created a hidden window
  • Drops a binary and executes it
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Network activity contains more than one unique useragent.
  • Attempts to modify proxy settings
  • Creates a copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz
www.ip138.com
api.log.602.com
static.602.com
www.602.com

How to determine BScope.Adware.ArcadeWeb?


File Info:

crc32: EE5C344E
md5: f66a0df3d975689f904ebc53fc2710e4
name: pcqq_sy8.exe
sha1: f2fd413d95a80107c87e016b029e81fa78455313
sha256: d87c35a6c3a0ea152bddae29b89bb4eb9aa3ea68d18a0670de5efdd963049bfb
sha512: 22e865ed017a536f1cf916b07281bf0688b9c3dcb46ac3e9f4802577dbcfb5de97f4a820b008d534a6031366402f78553e153c7eff1290256c4c3bb45a4e524c
ssdeep: 49152:rXTfTWOfTgMlRD6+NvLno1TQ7nY3IyHl55Y5IKR+AS5ASek:7WOfTg0Nbo18c3IyFPKR+AS5ASek
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2017-2018
InternalName: sywz
FileVersion: 2, 0, 0, 2010
CompanyName: x8da3x6e38x65f6x4ee3xff08x5317x4eacxff09x79d1x6280x6709x9650x516cx53f8
Comments: x6025x901fx5faex7aef
ProductName: x9875x6e38x5faex7aef
ProductVersion: 2, 0, 0, 2010
OriginalFilename: sywz.exe
Translation: 0x0804 0x04b0

BScope.Adware.ArcadeWeb also known as:

BkavW32.AIDetectVM.malware1
MicroWorld-eScanTrojan.GenericKD.42027515
FireEyeGeneric.mg.f66a0df3d975689f
CAT-QuickHealTrojan.Youxun
McAfeeArtemis!F66A0DF3D975
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusRiskware ( 005058f71 )
BitDefenderTrojan.GenericKD.42027515
K7GWRiskware ( 005058f71 )
Cybereasonmalicious.3d9756
TrendMicroHT_JOHNNIE_GG3103F8.UVPM
GDataTrojan.GenericKD.42027515
AlibabaRiskWare:Win32/YouXun.108acfc1
NANO-AntivirusTrojan.Win32.BAS.erkudf
RisingTrojan.Generic@ML.96 (RDMK:SAlJLjYGarrxfi7BwIypng)
Ad-AwareTrojan.GenericKD.42027515
SophosGeneric PUA PC (PUA)
F-SecureHeuristic.HEUR/AGEN.1002569
ZillyaTool.YouXun.Win32.102
Invinceaheuristic
McAfee-GW-EditionArtemis!Trojan
EmsisoftTrojan.GenericKD.42027515 (B)
IkarusPUA.RiskWare.Youxun
WebrootW32.Adware.Gen
AviraHEUR/AGEN.1002569
MAXmalware (ai score=99)
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D28149FB
MicrosoftPUA:Win32/Youxun
VBA32BScope.Adware.ArcadeWeb
ESET-NOD32a variant of Win32/RiskWare.YouXun.B
TrendMicro-HouseCallHT_JOHNNIE_GG3103F8.UVPM
SentinelOneDFI – Suspicious PE
eGambitUnsafe.AI_Score_99%
FortinetRiskware/YouXun
AVGWin32:Malware-gen
AvastWin32:Malware-gen
CrowdStrikewin/malicious_confidence_60% (D)
MaxSecureTrojan.Malware.7164915.susgen

How to remove BScope.Adware.ArcadeWeb?

BScope.Adware.ArcadeWeb removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment