Trojan

BScope.Trojan.DelShad (file analysis)

Malware Removal

The BScope.Trojan.DelShad is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.Trojan.DelShad virus can do?

  • Attempts to stop active services
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine BScope.Trojan.DelShad?


File Info:

crc32: E7C66E5F
md5: 438c12757946a2f236356cfa58e0ee27
name: tmpgfg_8wt3
sha1: 5e72e9f1ac3435b4db97f2fb554838ec19ac8480
sha256: c8ce31649b92b719286aab11428771639d7e272160c954a7aafd9d12913c2087
sha512: 5fc0ecff1d92c3154ff30713c8c3fee27173ae524f2df8b68e737d49c19745d6d6daa1743766551d11f2d87ba7c9eb9165405f7453a4b1353fec1e8edd8d6d1f
ssdeep: 1536:DTKNnkUl4+aWGPV+eQ5YADz4XqRIpSyCX8ICS4AdtOfKODngSztPvmp3K8QiR6b:KkojMww5XqREosfK3SxXmI7PDz
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

BScope.Trojan.DelShad also known as:

BkavW32.AIDetectVM.malwareB
MicroWorld-eScanDeepScan:Generic.Ransom.Sodinokibi.FC406C0D
FireEyeGeneric.mg.438c12757946a2f2
McAfeeSodinokibi!438C12757946
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (D)
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
ArcabitDeepScan:Generic.Ransom.Sodinokibi.FC406C0D
Invinceaheuristic
BitDefenderThetaGen:NN.ZedlaF.34128.hu4@a4ClyRc
F-ProtW32/Kryptik.AKW.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Ransomware.Sodinokibi-7013612-0
GDataDeepScan:Generic.Ransom.Sodinokibi.FC406C0D
KasperskyHEUR:Trojan-Ransom.Win32.Crypmod.vho
BitDefenderDeepScan:Generic.Ransom.Sodinokibi.FC406C0D
NANO-AntivirusVirus.Win32.Gen.ccmw
TencentMalware.Win32.Gencirc.1196fe07
Ad-AwareDeepScan:Generic.Ransom.Sodinokibi.FC406C0D
EmsisoftDeepScan:Generic.Ransom.Sodinokibi.FC406C0D (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen
TrendMicroRansom.Win32.SODINOKIBI.SMTH
McAfee-GW-EditionSodinokibi!438C12757946
SentinelOneDFI – Malicious PE
CyrenW32/Kryptik.AKW.gen!Eldorado
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=85)
Antiy-AVLTrojan[Ransom]/Win32.Crypmod
MicrosoftRansom:Win32/Sodinokibi.DSB!MTB
Endgamemalicious (high confidence)
ZoneAlarmHEUR:Trojan-Ransom.Win32.Crypmod.vho
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.RL_Ransom.R290570
VBA32BScope.Trojan.DelShad
ALYacDeepScan:Generic.Ransom.Sodinokibi.FC406C0D
MalwarebytesRansom.Sodinokibi
TrendMicro-HouseCallRansom.Win32.SODINOKIBI.SMTH
RisingRansom.Crypmod!8.DA9 (RDMK:cmRtazrG1w446PfMSwfVpMe45kXz)
IkarusTrojan-Ransom.Sodinokibi
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Sodinokibi.D!tr.ransom
AVGWin32:Malware-gen
PandaTrj/GdSda.A
Qihoo-360HEUR/QVM40.1.09CB.Malware.Gen

How to remove BScope.Trojan.DelShad?

BScope.Trojan.DelShad removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment