Trojan

BScope.Trojan.Domb removal

Malware Removal

The BScope.Trojan.Domb is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.Trojan.Domb virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine BScope.Trojan.Domb?


File Info:

name: F92EA031EF0621090D81.mlw
path: /opt/CAPEv2/storage/binaries/27eff624e119591d438123491fb1031137d8fcc78721b13566f84bcb7b84c68f
crc32: 3D7AE0D3
md5: f92ea031ef0621090d8123bfcfaca5ce
sha1: 7c6de21af7a29596bd4885c7e30ffd2794e3f924
sha256: 27eff624e119591d438123491fb1031137d8fcc78721b13566f84bcb7b84c68f
sha512: 21b7da5d318fe9360b24978d79745f942eda364fe714ccdc8482ac0543002d92a6fcbf9511d0d620c9be93417b4b456a0e14ae9ac97f906fcc8d22660760e080
ssdeep: 98304:fkFs6XGqguSuwXzIBHDNvIAwNALcOCF0BooKPXnQVykK9GIAbt1YXREn3T/cJDIe:fgrbSvItD6BALc1F0BJKPQBIAx53T/pe
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16E4633B288D668A7F75E6072CD02F9712439E35E4892DCB5CDEF60BCC46A15F80C47A9
sha3_384: 4596440fcd52b597394a053a534ab16671f3ccfd691b62c7538bdbace6f07d77d43c235407ae1ac72ef4a25f870c1773
ep_bytes: 60be004041008dbe00d0feff5783cdff
timestamp: 2001-03-20 06:35:57

Version Info:

0: [No Data]

BScope.Trojan.Domb also known as:

BkavW32.Common.490D8CAD
SkyhighBehavesLike.Win32.Dropper.tc
McAfeeArtemis!F92EA031EF06
SangforTrojan.Win32.Agent.V1sh
AlibabaTrojanDropper:Win32/Generic.90e09665
AvastFileRepMalware [Misc]
GoogleDetected
Antiy-AVLTrojan/Win32.SGeneric
VBA32BScope.Trojan.Domb
IkarusTrojan.Dropper
MaxSecureTrojan.Malware.216064600.susgen
FortinetPossibleThreat.PALLAS.H
AVGFileRepMalware [Misc]
DeepInstinctMALICIOUS

How to remove BScope.Trojan.Domb?

BScope.Trojan.Domb removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment