Adware

BScope.Adware.FileFinder removal guide

Malware Removal

The BScope.Adware.FileFinder is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.Adware.FileFinder virus can do?

  • Presents an Authenticode digital signature
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine BScope.Adware.FileFinder?


File Info:

crc32: AAFF6516
md5: 8dedef3517f283c8e5d069f7ac52c95c
name: 1771wanlz.exe
sha1: 30f97d0ad475123657a751bdd1b9e791d3298c24
sha256: 609e120032a9129ab8d60421fd378f047e1c6d3e9cbef9e127f0227a6cb9c5d3
sha512: e37c1cb143f0f1b48ae8b527a08c347bc967013ca26ab12123e6a5f3dcfb9d550bfe55f2b4fb674f81f037cc6d207553fe4b394f5a281996a8f1b2f33a855f8b
ssdeep: 24576:mBOHJMoBhiVYpBQXzFM/h6o/2oR05SWq+/jKrQb/8MlpIT0:PJMoB7pozah6o/2z5F/2VIiT0
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright: 1771wan
FileVersion: 3.0.0.0
CompanyName: 1771wan
ProductName: 1771wx70c8x65a9
ProductVersion: 3.0.0.0
FileDescription: 1771wx70c8x65a9 install
Translation: 0x0804 0x03a8

BScope.Adware.FileFinder also known as:

CAT-QuickHealPUA.AgentRI.S8916463
McAfeeArtemis!8DEDEF3517F2
K7GWAdware ( 004fef751 )
K7AntiVirusAdware ( 004fef751 )
Invinceaheuristic
SymantecTrojan.Gen.MBT
APEXMalicious
AvastWin32:Malware-gen
GDataWin32.Application.Agent.UHZQQH
Kasperskynot-a-virus:HEUR:AdWare.Win32.Wews87.vho
TencentWin32.Adware.Wews87.Efvh
Endgamemalicious (high confidence)
SophosGeneric PUA DA (PUA)
F-SecureAdware.ADWARE/Wews87.avuvj
DrWebWin32.HLLW.Autoruner2.33013
ZillyaAdware.Wews87.Win32.477
McAfee-GW-EditionArtemis
IkarusPUA.Wews87
JiangminAdWare.Generic.ntwk
AviraADWARE/Wews87.avuvj
Antiy-AVLGrayWare[AdWare]/Win32.AGeneric
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.Wews87.vho
VBA32BScope.Adware.FileFinder
MalwarebytesPUP.Optional.Wews87
ESET-NOD32a variant of Win32/Wews87.B potentially unwanted
TrendMicro-HouseCallTROJ_GEN.R015H07C820
eGambitUnsafe.AI_Score_97%
AVGWin32:Malware-gen

How to remove BScope.Adware.FileFinder?

BScope.Adware.FileFinder removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment