Malware

BScope.Malware-Cryptor.073 information

Malware Removal

The BScope.Malware-Cryptor.073 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.Malware-Cryptor.073 virus can do?

  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine BScope.Malware-Cryptor.073?


File Info:

name: A07BC68ACDDBD977629E.mlw
path: /opt/CAPEv2/storage/binaries/462b113961410f5f7717cdf349069eed0e7a8b1502a8e55dcdcdbf41962d7dea
crc32: E3680F1F
md5: a07bc68acddbd977629eb731ddaf7366
sha1: 801942807db78b5616b29f8b9f3fdc845b29e0ad
sha256: 462b113961410f5f7717cdf349069eed0e7a8b1502a8e55dcdcdbf41962d7dea
sha512: 51308d068c37f6093c8caae490a7a6b99d7e1d42aa983c1b4ef9033aa0eb84778f542e8bb3ea0ea64cd46622b0173fd7cd6e437b8859203accb2bcec2e41cc2b
ssdeep: 98304:0y4YnNy4YnNy4YnNy4YnNy4YnNy4YnNy4YnNy4Yn:z6666666
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T114B6F116F6F14437D1236EB8DC1F536CA8267E502D34648A3BE82D48AF39781753B29B
sha3_384: 7df7d7dfc76777abf7bfd13d4fdc0863beba91ceae4d3249b6f6a7982a0b06db89b5cf352c4d820bc24ab3bc4e2f7652
ep_bytes: 558becb9280000006a006a004975f953
timestamp: 1992-06-19 22:22:17

Version Info:

CompanyName: Adobe Systems Incorporated
FileDescription: Adobe Reader
FileVersion: 11.0.02.0
LegalCopyright: Copyright 1984-2012 Adobe Systems Incorporated and its licensors. All rights reserved.
ProductName: Adobe Reader
ProductVersion: 11.0.02.0
OriginalFilename: AcroRd32.exe
Translation: 0x0409 0x04e4

BScope.Malware-Cryptor.073 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Inject1.20583
MicroWorld-eScanGen:Variant.Zusy.339143
FireEyeGeneric.mg.a07bc68acddbd977
ALYacGen:Variant.Zusy.339143
CylanceUnsafe
K7AntiVirusTrojan ( 0056fa991 )
K7GWTrojan ( 0056fa991 )
Cybereasonmalicious.acddbd
BitDefenderThetaAI:Packer.D0ED8D2015
CyrenW32/DelfInject.FA.gen!Eldorado
ESET-NOD32a variant of Win32/Injector.AGIP
TrendMicro-HouseCallTROJ_INJECTOR_GG310387.UVPM
KasperskyTrojan.Win32.Agent.xosy
BitDefenderGen:Variant.Zusy.339143
NANO-AntivirusTrojan.Win32.Agent.bxpihj
AvastWin32:Malware-gen
TencentMalware.Win32.Gencirc.10cf8cfe
Ad-AwareGen:Variant.Zusy.339143
SophosGeneric ML PUA (PUA)
VIPRETrojan.Win32.Injector.ag (v)
TrendMicroTROJ_INJECTOR_GG310387.UVPM
McAfee-GW-EditionBehavesLike.Win32.Fareit.vc
EmsisoftGen:Variant.Zusy.339143 (B)
IkarusTrojan.Win32.Agent
AviraHEUR/AGEN.1126519
MAXmalware (ai score=83)
Antiy-AVLTrojan/Generic.ASBOL.2E1B
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Variant.Zusy.339143
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Agent.R452130
McAfeeGenericR-JZR!A07BC68ACDDB
VBA32BScope.Malware-Cryptor.073
MalwarebytesMalware.AI.4143657371
APEXMalicious
RisingTrojan.Generic@ML.94 (RDML:lKw8Z1LsWFhxLpLh2haVxQ)
YandexTrojan.GenAsa!rEgeUpWGMN0
SentinelOneStatic AI – Malicious PE
FortinetW32/Injector.REEL!tr
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_60% (D)

How to remove BScope.Malware-Cryptor.073?

BScope.Malware-Cryptor.073 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment