Backdoor

BScope.Backdoor.Bifrose malicious file

Malware Removal

The BScope.Backdoor.Bifrose is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.Backdoor.Bifrose virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Checks for the presence of known devices from debuggers and forensic tools
  • Anomalous binary characteristics

How to determine BScope.Backdoor.Bifrose?


File Info:

crc32: 265B5E38
md5: ea28be03eb25ecec6881a00d5f395314
name: SCWG..exe
sha1: 68629040c1169b9c536bd03c4f7941a8fef3509d
sha256: c7eaeed0bbc2bbd40a6e5724661d03222aed69735e1e4f8304e2667b23171d9b
sha512: 7c1e532f58021709819aa73254009a8e35ffb8e19e1d4c8638229c195f72763ebf0289123c860ddc6ef7df48166446bd4487df0e094dc4c5e844433616d65b76
ssdeep: 24576:uA+y2QKzHHW0A2ZwkH425RE10iyMRqi5oczw/908D:Oy2Rznb7H4KM0iymqi7wlv
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

LegalCopyright:
InternalName:
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments: QQ: 53430052
ProductName:
ProductVersion: 1.0.0.0
FileDescription:
OriginalFilename:
Translation: 0x0804 0x03a8

BScope.Backdoor.Bifrose also known as:

McAfeeGenericRXBB-WA!EA28BE03EB25
CylanceUnsafe
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
SymantecTrojan.Gen
TrendMicro-HouseCallTROJ_GEN.R005C0PDN19
KasperskyPacked.Win32.Black.d
AlibabaPacked:Win32/Black.0b46394e
RisingMalware.Black!8.24B (CLOUD)
Endgamemalicious (high confidence)
ComodoMalware@#28amuzothc93e
F-SecureTrojan.TR/Rogue.8875736
ZillyaTrojan.GenericKD.Win32.96120
TrendMicroTROJ_GEN.R005C0PDN19
McAfee-GW-EditionGenericRXBB-WA!EA28BE03EB25
Trapminemalicious.moderate.ml.score
SophosMal/Generic-S
JiangminPacked.Black.vzh
WebrootW32.Malware.Heur
AviraTR/Rogue.8875736
AegisLabHacktool.Win32.Black.x!c
ZoneAlarmPacked.Win32.Black.d
VBA32BScope.Backdoor.Bifrose
TencentWin32.Packed.Black.Ajvc
AVGWin32:Malware-gen
AvastWin32:Malware-gen

How to remove BScope.Backdoor.Bifrose?

BScope.Backdoor.Bifrose removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment