Trojan

BScope.Trojan.Bojotuc removal guide

Malware Removal

The BScope.Trojan.Bojotuc is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.Trojan.Bojotuc virus can do?

  • Executable code extraction
  • Repeatedly searches for a not-found browser, may want to run with startbrowser=1 option
  • Unconventionial binary language: Russian
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • A process attempted to delay the analysis task by a long amount of time.

How to determine BScope.Trojan.Bojotuc?


File Info:

crc32: 36DADAC0
md5: 68729297b76937b1d5caa0f89f4c2ada
name: 68729297B76937B1D5CAA0F89F4C2ADA.mlw
sha1: 9a8c69cadb5bc6740521e636eca7af5af304dbd7
sha256: a32ed1a4b5ef4fd2d98a6a7bb2d01d30dfd980e1a2d7eac44eaa8685e86352d9
sha512: cf4e0be1106d8a252e407ebaefd3ed403b1ca9355c635e83e9556d3feef31b8b63c9102bdfa8f4fbbb784d8e676c947e6e715e1f026b2cb5083fe2126172b9f7
ssdeep: 3072:a+Tdk76FGlLNGE6zv7rFkgIIDm7d3rSeLgRRyDF:N7FOLoN+MirXLgM
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2009
InternalName: Flash Install
FileVersion: 1, 23, 2, 5
ProductName: Flash Install
ProductVersion: 1, 23, 2, 5
FileDescription: Flash Install
OriginalFilename: Codec Install
Translation: 0x0419 0x04b0

BScope.Trojan.Bojotuc also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00143f451 )
Elasticmalicious (high confidence)
DrWebTrojan.BrowseBan.306
CynetMalicious (score: 100)
ALYacGen:Variant.Strictor.105013
CylanceUnsafe
ZillyaTrojan.LockScreen.Win32.7201
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaRansom:Win32/PinkBlocker.e9f2212f
K7GWTrojan ( 00143f451 )
Cybereasonmalicious.7b7693
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/LockScreen.OW
APEXMalicious
AvastWin32:Trojan-gen
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Strictor.105013
NANO-AntivirusVirus.Win32.Gen.ccmw
MicroWorld-eScanGen:Variant.Strictor.105013
TencentWin32.Trojan.Lockscreen.Wpjm
Ad-AwareGen:Variant.Strictor.105013
SophosML/PE-A
ComodoMalware@#b5z7wmbdyl15
BitDefenderThetaGen:NN.ZexaF.34692.iq0@aqaW7wkk
VIPRETrojan.Win32.Kuluoz.i (v)
McAfee-GW-EditionBehavesLike.Win32.Upatre.cc
FireEyeGeneric.mg.68729297b76937b1
EmsisoftGen:Variant.Strictor.105013 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/PinkBlocker.cb
AviraTR/Crypt.ZPACK.Gen
eGambitGeneric.Malware
MicrosoftTrojan:Win32/Dynamer!ac
AegisLabTrojan.Win32.Generic.lOIX
GDataGen:Variant.Strictor.105013
AhnLab-V3Trojan/Win32.PinkBlocker.C79358
Acronissuspicious
McAfeeGenericRXHL-GG!68729297B769
MAXmalware (ai score=100)
VBA32BScope.Trojan.Bojotuc
MalwarebytesMalware.AI.596253126
PandaTrj/GdSda.A
RisingTrojan.Crypto!8.364 (CLOUD)
YandexTrojan.GenAsa!WHGU8kG52cE
IkarusTrojan-Dropper.Win32.Blocker
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/LockScreen.OW!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove BScope.Trojan.Bojotuc?

BScope.Trojan.Bojotuc removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment