Trojan

BScope.Trojan.MTA.01233 (file analysis)

Malware Removal

The BScope.Trojan.MTA.01233 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.Trojan.MTA.01233 virus can do?

  • Authenticode signature is invalid
  • Creates known Allaple worm mutexes
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine BScope.Trojan.MTA.01233?


File Info:

name: 263FF8979494D571A243.mlw
path: /opt/CAPEv2/storage/binaries/5d1204a4a607794a5b3b80e12af9d691650affb42af2c3c639e179bbfb4fccb7
crc32: 99624A84
md5: 263ff8979494d571a243cfd2c7d4d445
sha1: ee01dc6fc937fc9c7b3dd203e8ff0abde3e9f488
sha256: 5d1204a4a607794a5b3b80e12af9d691650affb42af2c3c639e179bbfb4fccb7
sha512: 9c6fe95a560c2be51f8d81d4593c1b67e4e996a9d94bb1dd830acc0a287b394bf2f7b96a38e86f69fe26da33af3117e1978e1030c891fa24af710256d805b5b6
ssdeep: 3072:g/PdlPo/KfWQeOCKWmgXGN69Rz2mmpmKj:IlgQROV2mK
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T177B31871E253A426CC75053C9749E3FE8DECEA336704887B9BC8CD262DB4BA1DB12546
sha3_384: 6dbdc9ead64757ae5521cc3219b4848f3bb94bcb3b470fe7559b619bd4d46527d5803ea6af264f29a3fa159ac1aff937
ep_bytes: e8eb0200006803800000e845090000e8
timestamp: 2006-11-28 21:04:54

Version Info:

0: [No Data]

BScope.Trojan.MTA.01233 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Eb.ts5c
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Dacic.4254EF66.A.A2550686
FireEyeGeneric.mg.263ff8979494d571
CAT-QuickHealWorm.Allaple.B4
SkyhighBehavesLike.Win32.ExploitDcomRpc.ch
ALYacGeneric.Dacic.4254EF66.A.A2550686
MalwarebytesGeneric.Malware.AI.DDS
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderGeneric.Dacic.4254EF66.A.A2550686
K7GWTrojan ( 004e40051 )
K7AntiVirusTrojan ( 004e40051 )
BitDefenderThetaAI:Packer.59F6A7B91E
VirITBackdoor.Win32.SdBot.AFCX
SymantecW32.Spybot.Worm
ESET-NOD32a variant of Win32/Allaple.NAC
APEXMalicious
ClamAVWin.Malware.Sfwx-9853337-0
KasperskyTrojan.Win32.Eb.dgo
AlibabaWorm:Win32/Kolab.e8e7
NANO-AntivirusTrojan.Win32.Allaple.bgryk
ViRobotBackdoor.Win32.A.Rbot.110592.AI
RisingBackdoor.IRCbot!8.B47 (TFE:2:CfLXO7FBrXI)
SophosMal/IRCBot-B
BaiduWin32.Worm.Rbot.a
F-SecureWorm.WORM/Rbot.Gen
DrWebTrojan.Starman
VIPREGeneric.Dacic.4254EF66.A.A2550686
TrendMicroTROJ_GEN.R002C0CH223
EmsisoftGeneric.Dacic.4254EF66.A.A2550686 (B)
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=84)
JiangminWorm/Generic.zfq
GoogleDetected
AviraWORM/Rbot.Gen
VaristW32/Allaple.I.gen!Eldorado
Antiy-AVLTrojan[Backdoor]/Win32.Rbot
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/IRCBor.LK!MTB
XcitiumMalCrypt.Indus!@1qrzi1
ArcabitGeneric.Dacic.4254EF66.A.A2550686
ZoneAlarmTrojan.Win32.Eb.dgo
GDataWin32.Trojan.PSE1.C1KH17
CynetMalicious (score: 100)
AhnLab-V3Worm/Win32.Allaple.R34300
Acronissuspicious
McAfeeExploit-DcomRpc.c.gen
TACHYONTrojan/W32.Eb.108544
DeepInstinctMALICIOUS
VBA32BScope.Trojan.MTA.01233
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0CH223
TencentTrojan.Win32.Eb.ha
IkarusBackdoor.Win32.Allaple
MaxSecureTrojan.Malware.184606469.susgen
FortinetW32/Allaple.NAC!worm
AVGWin32:Allaple-D [Trj]
Cybereasonmalicious.fc937f
AvastWin32:Allaple-D [Trj]

How to remove BScope.Trojan.MTA.01233?

BScope.Trojan.MTA.01233 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment