Trojan

BScope.Trojan.AET.1907 malicious file

Malware Removal

The BScope.Trojan.AET.1907 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.Trojan.AET.1907 virus can do?

  • Executable code extraction
  • Compression (or decompression)
  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Russian
  • Network activity detected but not expressed in API logs
  • Creates a slightly modified copy of itself
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine BScope.Trojan.AET.1907?


File Info:

crc32: 629257F9
md5: 8372b212d1ff1d2a40465e3bdcb40363
name: 8372B212D1FF1D2A40465E3BDCB40363.mlw
sha1: a62141fd4abbb0247b896d43d5a5cd59cc5aa302
sha256: 1a36028fa434c685833a8b6747a9af7682e95c812a07b4a016a88a9ead851e68
sha512: d995f35b50ed66765aca5d903e8e3976a411242fee84bb446b6d7d56c6002929f73bb3108cbc323f8c94f26fabde19d7b3b0123c4daa545d83fd4ddb5f6d2e2f
ssdeep: 768:qIdVynfVZoirhp3P/kcTdhEDpAnQmlNaX+yhJ8:qQVwfV9Zb/JaX+yhK
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

BScope.Trojan.AET.1907 also known as:

K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.1252055
FireEyeGeneric.mg.8372b212d1ff1d2a
CAT-QuickHealTrojanDownloader.Upatre.A4
ALYacTrojan.GenericKD.1252055
MalwarebytesTrojan.Email.FA
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderTrojan.GenericKD.1252055
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.2d1ff1
CyrenW32/Trojan.XORD-0863
SymantecTrojan.Gen.2
ESET-NOD32Win32/TrojanDownloader.Small.PRL
ZonerTrojan.Win32.17605
APEXMalicious
Paloaltogeneric.ml
NANO-AntivirusTrojan.Win32.DownLoad3.clrudn
TencentMalware.Win32.Gencirc.10b09aed
Ad-AwareTrojan.GenericKD.1252055
ComodoTrojWare.Win32.Kryptik.BKB@543i9l
DrWebTrojan.DownLoad3.28507
EmsisoftTrojan.GenericKD.1252055 (B)
JiangminTrojan/Bublik.fxq
AviraTR/Dldr.Upatre.A.22
SUPERAntiSpywareTrojan.Agent/Gen-Upatre
GDataTrojan.GenericKD.1252055
AhnLab-V3Trojan/Win32.Zbot.C195331
Acronissuspicious
VBA32BScope.Trojan.AET.1907
MAXmalware (ai score=100)
TrendMicro-HouseCallTROJ_UPATRE.AE
RisingMalware.Heuristic!ET#98% (RDMK:cmRtazrdfTfz9aED8DxjPqmt1xdB)
YandexTrojan.GenAsa!BzQQ0E3euk4
SentinelOneStatic AI – Malicious PE
FortinetW32/Small.PRL!tr

How to remove BScope.Trojan.AET.1907?

BScope.Trojan.AET.1907 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment