Trojan

BScope.Trojan.Albu removal

Malware Removal

The BScope.Trojan.Albu is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.Trojan.Albu virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine BScope.Trojan.Albu?


File Info:

name: 0E4ED413617216C75635.mlw
path: /opt/CAPEv2/storage/binaries/889f8ac7c9c21528bf6e068b016aa9cefd0d9e6aae4683ee52a32812efeb08ed
crc32: 7AFFAC78
md5: 0e4ed413617216c75635118620b564bf
sha1: 5db41d23bbe02cd7595113a6afac6879e35daca1
sha256: 889f8ac7c9c21528bf6e068b016aa9cefd0d9e6aae4683ee52a32812efeb08ed
sha512: 4e85b262a3d8ee2feca3561705a29b1c49404e7aca7f0610ae8a510d2475583519c11e64bf1706327f34f6be4c2402ad81f2f72b2bdb4d7c105002b59d2bd431
ssdeep: 12288:SLH3ShDAKZNncR+9oQxzr+VydhYeUcdBoS6Rf2o5A1k:SLKUKzncR+9sVydueUFkqqk
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17405BF41B7A290F7C71535340AB62776DA749A660B218FCF9358DF2C2D331A1AE37239
sha3_384: f6286b8b45a7cf30b17c75434c430150aaff108e0b3d2fb31f5261562e442bbdcf2559cc4ee89198e9678b35c0d1c97c
ep_bytes: 558bec6aff6840784a00689c90450064
timestamp: 2013-01-21 06:29:21

Version Info:

FileVersion: 2.0.0.0
FileDescription: 中域集团
ProductName: 中域浏览器
ProductVersion: 2.0.0.0
LegalCopyright: 作者版权所有 请尊重并使用正版
Comments: 本程序使用易语言编写(http://www.eyuyan.com)
Translation: 0x0804 0x04b0

BScope.Trojan.Albu also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
FireEyeGeneric.mg.0e4ed413617216c7
SkyhighBehavesLike.Win32.Generic.ch
MalwarebytesGeneric.Malware.AI.DDS
K7AntiVirusTrojan ( 005246d51 )
K7GWTrojan ( 005246d51 )
CrowdStrikewin/malicious_confidence_70% (D)
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
CynetMalicious (score: 100)
SophosGeneric ML PUA (PUA)
F-SecureTrojan:W32/DelfInject.R
Trapminemalicious.moderate.ml.score
IkarusTrojan-Spy.Agent
Antiy-AVLTrojan/Win32.FlyStudio.a
XcitiumWorm.Win32.Dropper.RA@1qraug
GDataWin32.Application.PSE.10ODIJ9
VaristW32/Trojan.ISO.gen!Eldorado
McAfeeGenericRXAA-AA!0E4ED4136172
DeepInstinctMALICIOUS
VBA32BScope.Trojan.Albu
Cylanceunsafe
SentinelOneStatic AI – Malicious PE
FortinetW32/CoinMiner.PHP!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.3bbe02
AvastWin32:Evo-gen [Trj]

How to remove BScope.Trojan.Albu?

BScope.Trojan.Albu removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment