Backdoor

BScope.Backdoor.Pasur malicious file

Malware Removal

The BScope.Backdoor.Pasur is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.Backdoor.Pasur virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs

How to determine BScope.Backdoor.Pasur?


File Info:

crc32: C2722191
md5: 96da98a44d35fd55ef30ea1ba1133dca
name: 96DA98A44D35FD55EF30EA1BA1133DCA.mlw
sha1: 72ae9b3a0913856f48ca5009ba7c42fd427fe655
sha256: 9592c0e44e0796c750286496cd22b5f46bfb65254de091d11529c4c2cb4cf351
sha512: a7e1dae3a9f3915e02f558808c7aa59264b33f78fe939fb58f2b877231d19740ad4b2f00509473b4d94b49f4ccc7295ff674fcdeed33ec369c965216815f8ecf
ssdeep: 24576:8U002bN13jpPal2EtbmR6W0wIRixGNQhGLtESk:8U002bN1jEtQN0wZwNawESk
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: http://www.yyyr.net/
FileVersion: 1.1.1231.2
CompanyName: 77
Comments: x767ex5ea6x4e91x76d8x5bc6x94a5x5c0fx5de5x5177
ProductName: x767ex5ea6x4e91x76d8x5bc6x94a5x5c0fx5de5x5177
ProductVersion: 1.1.1231.2
FileDescription: x767ex5ea6x4e91x76d8x5bc6x94a5x5c0fx5de5x5177
Translation: 0x0804 0x04b0

BScope.Backdoor.Pasur also known as:

BkavW32.AIDetectVM.malware1
K7AntiVirusTrojan ( 005246d51 )
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Wacatac
ALYacTrojan.GenericKD.34075512
CylanceUnsafe
CrowdStrikewin/malicious_confidence_60% (W)
K7GWTrojan ( 005246d51 )
Cybereasonmalicious.a09138
CyrenW32/Trojan.CLL.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
AvastWin32:Malware-gen
GDataTrojan.GenericKD.34075512
BitDefenderTrojan.GenericKD.34075512
MicroWorld-eScanTrojan.GenericKD.34075512
Ad-AwareTrojan.GenericKD.34075512
SophosGeneric PUA HC (PUA)
ComodoWorm.Win32.Dropper.RA@1qraug
BitDefenderThetaGen:NN.ZexaF.34152.cr0@a8yEGAeb
VIPRETrojan.Win32.Generic!BT
Invinceaheuristic
FireEyeGeneric.mg.96da98a44d35fd55
EmsisoftTrojan.GenericKD.34075512 (B)
SentinelOneDFI – Malicious PE
F-ProtW32/Trojan.CLL.gen!Eldorado
Endgamemalicious (high confidence)
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Win32.Tiggre
MicrosoftTrojan:Win32/Ymacco.AA95
ArcabitTrojan.Generic.D207F378
AegisLabTrojan.Win32.Generic.mqYD
Acronissuspicious
McAfeeArtemis!96DA98A44D35
MAXmalware (ai score=88)
VBA32BScope.Backdoor.Pasur
MalwarebytesTrojan.Agent
RisingTrojan.Tiggre!8.ED98 (CLOUD)
IkarusTrojan.Win32.CoinMiner
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Malware-gen

How to remove BScope.Backdoor.Pasur?

BScope.Backdoor.Pasur removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment