Backdoor

BScope.Backdoor.HVNC removal tips

Malware Removal

The BScope.Backdoor.HVNC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.Backdoor.HVNC virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • A scripting utility was executed
  • Attempts to stop active services
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine BScope.Backdoor.HVNC?


File Info:

crc32: 15D109F0
md5: d5abc38a5c076f96b73c3f02b6e7309e
name: D5ABC38A5C076F96B73C3F02B6E7309E.mlw
sha1: 81578e36b26afb6b332eaea37cf69683cefc5e30
sha256: 32fe07d6f5a3fdfe6587c3ab2b7abf6d046f98aba6086a6ec2516c71bd48b196
sha512: b3040573bd954cc9dde4d8905384462205deadea6cb2a64da4c6a8cf130eb988a08c144df8d05382892c82af77b37a8180b82b5ce61f3b9ff7982d287d60a1d4
ssdeep: 6144:qsYtY8tUlK83czj3IHIbsf1g1idK3PUsdsdeiOOM5Y7qC9lZQib:VYt1tUuGnf+YA3csmeLHC9l
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2019, ghjhfkh
InternalName: fyukfuyk.exe
FileVersion: 1.0.5.4
Translation: 0x0841 0x04c4

BScope.Backdoor.HVNC also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0056a9ad1 )
LionicTrojan.Win32.Blocker.tqSX
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Siggen2.37034
CynetMalicious (score: 100)
CAT-QuickHealRansom.STOP.S8831477
ALYacGen:Heur.Mint.Titirez.qG0@4C@BiNh
CylanceUnsafe
ZillyaTrojan.Injector.Win32.662229
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Glupteba.9b6acd76
K7GWTrojan ( 0056a9ad1 )
Cybereasonmalicious.a5c076
CyrenW32/Kryptik.API.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.EION
APEXMalicious
AvastWin32:Agent-BCLZ [Trj]
ClamAVWin.Malware.Generic-7366725-0
KasperskyUDS:Trojan.Win32.Chapak
BitDefenderGen:Heur.Mint.Titirez.qG0@4C@BiNh
NANO-AntivirusTrojan.Win32.TrjGen.gfnxxd
MicroWorld-eScanGen:Heur.Mint.Titirez.qG0@4C@BiNh
TencentWin32.Trojan.Dreidel.Wsad
Ad-AwareGen:Heur.Mint.Titirez.qG0@4C@BiNh
SophosMal/Generic-R + Mal/GandCrab-G
BitDefenderThetaGen:NN.ZexaF.34236.qG0@aC@BiNh
VIPRETrojan.Win32.Generic!BT
TrendMicroTrojan.Win32.SMOKELOAD.SMD2.hp
McAfee-GW-EditionBehavesLike.Win32.Lockbit.dh
FireEyeGeneric.mg.d5abc38a5c076f96
EmsisoftTrojan.Agent (A)
SentinelOneStatic AI – Malicious PE
JiangminBackdoor.Agent.gil
AviraHEUR/AGEN.1126869
eGambitUnsafe.AI_Score_54%
Antiy-AVLTrojan/Generic.ASMalwS.2C9154F
MicrosoftTrojan:Win32/Glupteba.DSE!MTB
SUPERAntiSpywareTrojan.Agent/Gen-MalPack
ZoneAlarmnot-a-virus:HEUR:NetTool.Win32.TorTool.vho
GDataGen:Heur.Mint.Titirez.qG0@4C@BiNh
AhnLab-V3Trojan/Win32.MalPe.R296108
Acronissuspicious
McAfeePacked-FPH!D5ABC38A5C07
MAXmalware (ai score=81)
VBA32BScope.Backdoor.HVNC
MalwarebytesTrojan.MalPack.GS
PandaTrj/Genetic.gen
TrendMicro-HouseCallTrojan.Win32.SMOKELOAD.SMD2.hp
RisingTrojan.Generic@ML.100 (RDML:wGAuW3X52qKsQDohKZhKuA)
YandexTrojan.GenAsa!RUKju/HXr68
IkarusTrojan-Ransom.Crypted007
MaxSecureTrojan.Malware.74656220.susgen
FortinetW32/Kryptik.HFSR!tr
AVGWin32:Agent-BCLZ [Trj]
Paloaltogeneric.ml

How to remove BScope.Backdoor.HVNC?

BScope.Backdoor.HVNC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment