Trojan

Should I remove “BScope.TrojanDownloader.Bandit”?

Malware Removal

The BScope.TrojanDownloader.Bandit is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.TrojanDownloader.Bandit virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • A scripting utility was executed
  • Attempts to stop active services
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine BScope.TrojanDownloader.Bandit?


File Info:

crc32: A4E60F03
md5: a5c3a43e031c4fb12d383ac151d6aa75
name: A5C3A43E031C4FB12D383AC151D6AA75.mlw
sha1: decdf0bcc7d05312cf7a318ef85eafa3306d04f5
sha256: 59136378a89ddc23b7fbae7a8584bdb83fa694eac75713a132312d7ae0644bf8
sha512: 2f9594bad541fa29284ddcd85ee1ca7fa8b39d95c4bc31312ec34df3517e56d03eb1f811f6e3a8e403aafa86d8a57febc9af37be735415b19e89580a58cb259d
ssdeep: 6144:BWNFgBJT2XmbwvChyG3fFxMsld9CrS2HbQbc:BWw/WvQJmO/Cwbc
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

FileOldVersion: 1.0.4.4
InternalName: gjdtth.exe
Copyright: Copyright (C) 2020, odfgbiv
Translation: 0x0841 0x04c4

BScope.TrojanDownloader.Bandit also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0055b0f71 )
LionicAdware.Win32.SoftPulse.m2pZ
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.858
CynetMalicious (score: 100)
ALYacTrojan.Ransom.Sodinokibi
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.1874650
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaAdWare:Win32/Bandit.a643722c
K7GWTrojan ( 0055b0f71 )
Cybereasonmalicious.e031c4
ESET-NOD32a variant of Win32/Kryptik.GYIT
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
ClamAVWin.Dropper.Tofsee-7489241-0
KasperskyHEUR:Trojan-Downloader.Win32.Bandit.vho
BitDefenderTrojan.BrsecmonE.1
NANO-AntivirusTrojan.Win32.Encoder.giqadg
MicroWorld-eScanTrojan.BrsecmonE.1
TencentWin32.Trojan-downloader.Bandit.Lnxr
Ad-AwareTrojan.BrsecmonE.1
SophosMal/Generic-S + Mal/GandCrab-G
ComodoMalware@#1111o4gjil8tm
BitDefenderThetaGen:NN.ZexaF.34236.su0@auJfb8
VIPRETrojan.Win32.Generic!BT
TrendMicroTrojan.Win32.SMOKELOAD.SMD2.hp
McAfee-GW-EditionBehavesLike.Win32.Generic.dh
FireEyeGeneric.mg.a5c3a43e031c4fb1
EmsisoftTrojan.Generic.EF (A)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDownloader.Bandit.avd
AviraHEUR/AGEN.1106537
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.2CFEA85
MicrosoftPWS:Win32/Predator.GKM!MTB
GDataTrojan.BrsecmonE.1
AhnLab-V3Trojan/Win32.MalPe.R299328
Acronissuspicious
McAfeeGenericRXJC-QW!A5C3A43E031C
MAXmalware (ai score=88)
VBA32BScope.TrojanDownloader.Bandit
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojan.Win32.SMOKELOAD.SMD2.hp
RisingTrojan.Kryptik!1.BE74 (CLASSIC)
YandexTrojan.GenAsa!LL7vSOCDnXQ
IkarusTrojan-Downloader.Win32.SmokeLoader
MaxSecureTrojan.Malware.74655258.susgen
FortinetW32/Kryptik.GYMH!tr
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml

How to remove BScope.TrojanDownloader.Bandit?

BScope.TrojanDownloader.Bandit removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment