Risk

Should I remove “BScope.Riskware.Hudun”?

Malware Removal

The BScope.Riskware.Hudun is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.Riskware.Hudun virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine BScope.Riskware.Hudun?


File Info:

name: 5688D579418D34AB97C0.mlw
path: /opt/CAPEv2/storage/binaries/19aea82d7eef21190ab098f43bd31a62e6bae285829055df36dd84acf1fb84fc
crc32: 6F4EFDCC
md5: 5688d579418d34ab97c04b46397a5016
sha1: a988927ec8e7bac088c7fac1be1acdf5428d34c6
sha256: 19aea82d7eef21190ab098f43bd31a62e6bae285829055df36dd84acf1fb84fc
sha512: 8d2461add409f085ae613762bdad824f2d4db0feaa0bab0a519a0ac68ef225994227fd3e3159ab4149321fbffe6a437d56c11059261202dab7601b54e2ddfd55
ssdeep: 49152:vlgLlk+tt8mCJmtkN0kXR4xUxVJ9TquxPUkMaCtmts2BxhdnnPZR3P:vlgLlk+t8mCMtKqx0rrwmtZV
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T13FE5CF23B541C172E1520DB0AD6E6B6A4478AE20C72744D7E3F43D2E19731DE2EF626B
sha3_384: 9f272e0b581d5af0accae3f5bb64541fb80116c09938eec29c7cd7c98b3b66e63ee85f04305a52c33e939a2dc3f6c44b
ep_bytes: e845100000e98efeffffcccccccccccc
timestamp: 2022-06-30 06:31:24

Version Info:

Comments: 布谷鸟配音
CompanyName: 上海互盾信息科技有限公司
FileDescription: 布谷鸟配音
FileVersion: 1.7.9
InternalName: 布谷鸟配音
LegalCopyright: 上海互盾信息科技有限公司
LegalTrademarks: 互盾科技
OriginalFilename: 布谷鸟配音
PrivateBuild: 布谷鸟配音
ProductName: 布谷鸟配音
ProductVersion: 1.7.9
SpecialBuild: 布谷鸟配音
Translation: 0x0804 0x04b0

BScope.Riskware.Hudun also known as:

BkavW32.Common.A057A78A
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanTrojan.GenericKD.66346544
FireEyeTrojan.GenericKD.66346544
SkyhighBehavesLike.Win32.BadFile.wh
McAfeeArtemis!5688D579418D
MalwarebytesPUP.Optional.ChinAd
VIPRETrojan.GenericKD.66346544
SangforTrojan.Win32.Hudun.Vzvx
K7AntiVirusAdware ( 005799a81 )
BitDefenderTrojan.GenericKD.66346544
K7GWAdware ( 005799a81 )
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Hudun.A potentially unwanted
APEXMalicious
EmsisoftTrojan.GenericKD.66346544 (B)
IkarusPUA.Hudun
WebrootPua.Gen
ArcabitTrojan.Generic.D3F45E30
GDataTrojan.GenericKD.66346544
DeepInstinctMALICIOUS
ALYacTrojan.GenericKD.66346544
MAXmalware (ai score=85)
VBA32BScope.Riskware.Hudun
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002H09DC23
YandexRiskware.Agent!cJ/2s75BGBo
MaxSecureTrojan.Malware.205853416.susgen
FortinetRiskware/Hudun
AVGWin32:Malware-gen
AvastWin32:Malware-gen
CrowdStrikewin/grayware_confidence_70% (W)

How to remove BScope.Riskware.Hudun?

BScope.Riskware.Hudun removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment