Trojan

BScope.Trojan.Trafog removal tips

Malware Removal

The BScope.Trojan.Trafog is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.Trojan.Trafog virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine BScope.Trojan.Trafog?


File Info:

name: F6E75DF5C4FC8A999279.mlw
path: /opt/CAPEv2/storage/binaries/808724c49a681643c4faad903b7ede451dcf3fa22270cf9fd85a4fdcc434a1e7
crc32: AB9F040B
md5: f6e75df5c4fc8a999279a0b91db85818
sha1: 882347d428e73118727ef6638f2dc0e3c8ff1403
sha256: 808724c49a681643c4faad903b7ede451dcf3fa22270cf9fd85a4fdcc434a1e7
sha512: 9148d23fbb48db90f333f7832467c5b6611042d0ab0d2b1ecba5e1e56095b6a07d358bbc2fb23bfa0db5e857c43f7ed45f932f15eb39a71a937e237b312009ed
ssdeep: 12288:pE3zNo+AHGJ5tMJQar4yUrZreMoVxPfQ9laZrJawTZOx3ZizkQneL24:iBcGPar4frZreMobfyleLEx4/U2
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T173D4AF62F2914437D1631B799C2B66BD59297F102D6C248E7FE43E0C9F3A7813A391A3
sha3_384: 70da7a42601e68ea84642b4bff2a4f073dd4f465f93570e767490ea2f41a9472aa161f238e151868e475ce06ca61afe4
ep_bytes: 558bec83c4f0b8707c4700e8dce2f8ff
timestamp: 1992-06-19 22:22:17

Version Info:

CompanyName: 北京紫光华宇软件股份有限公司
FileDescription:
FileVersion: 6.0.0.6
InternalName: upimupd
LegalCopyright:
LegalTrademarks: Thunisoft
OriginalFilename: upimupd.exe
ProductName: 紫光华宇拼音输入法
ProductVersion: 6.0
Comments: 紫光华宇拼音输入法自动更新
Translation: 0x0804 0x03a8

BScope.Trojan.Trafog also known as:

BkavW32.Common.ADBF1A28
FireEyeGeneric.mg.f6e75df5c4fc8a99
SkyhighBehavesLike.Win32.Generic.jh
McAfeeRDN/Generic PWS.y
SangforTrojan.Win32.Agent.Vu20
APEXMalicious
AvastFileRepMalware [Misc]
Trapminesuspicious.low.ml.score
Antiy-AVLGrayWare/Win32.Wacapew
Kingsoftmalware.kb.a.770
VBA32BScope.Trojan.Trafog
TrendMicro-HouseCallTROJ_GEN.R002H06JH23
RisingTrojan.Generic@AI.85 (RDML:pBlpoBuUyKlnRMZN2wJQ1w)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/PWS.Y!tr
AVGFileRepMalware [Misc]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_90% (W)

How to remove BScope.Trojan.Trafog?

BScope.Trojan.Trafog removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment