Trojan

BScope.TrojanDownloader.Loan malicious file

Malware Removal

The BScope.TrojanDownloader.Loan is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.TrojanDownloader.Loan virus can do?

  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs
  • Creates a slightly modified copy of itself
  • Anomalous binary characteristics

How to determine BScope.TrojanDownloader.Loan?


File Info:

crc32: F0028297
md5: ed16a25074f27bb3097cff2b05408e92
name: ED16A25074F27BB3097CFF2B05408E92.mlw
sha1: 80bb3377813f955cb1eaee21f9f1cd97b7cd740e
sha256: 1e32597bc1df07d40c8b89e67434969b36018502325c067de7cb277e562b58ea
sha512: 40dbb951f0935aa5c7dc1cd87cd9059e4a96885f8b68b7c6eafe9fb4349ad10f373d7e2bf3dd22c5aa86810387906680a88511db795857ae5986cefb1118631e
ssdeep: 24576:6ZYsYJNWlgauWVSuShZW/S7zONx0zqZ4f5/4/31K4COc3YqX6:+cJMggSuSrW/SscAy4E4Cn3tX6
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

BScope.TrojanDownloader.Loan also known as:

K7AntiVirusRiskware ( 0040eff71 )
LionicTrojan.Win32.Loan.a!c
Elasticmalicious (high confidence)
DrWebTrojan.Sdter.40
CynetMalicious (score: 100)
CAT-QuickHealTrojan.GenericPMF.S23371339
ALYacGen:Trojan.Heur.orZ@H9kNqkgb
CylanceUnsafe
ZillyaDownloader.Loan.Win32.2
SangforTrojan.Win32.XPACK.Gen5
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaTrojanDownloader:Win32/BScope.8a0fd7c3
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.074f27
CyrenW32/Downloader.ULNT-8355
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/TrojanDropper.Agent.SOI
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Downloader.20341-1
KasperskyTrojan-Downloader.Win32.Loan.a
BitDefenderGen:Trojan.Heur.orZ@H9kNqkgb
NANO-AntivirusTrojan.Win32.Loan.wswt
ViRobotTrojan.Win32.Downloader.2356269
MicroWorld-eScanGen:Trojan.Heur.orZ@H9kNqkgb
TencentMalware.Win32.Gencirc.10b54913
Ad-AwareGen:Trojan.Heur.orZ@H9kNqkgb
SophosMal/Generic-E
ComodoTrojWare.Win32.Downloader.Loan.~A@5eal0
BitDefenderThetaAI:Packer.3B5728751C
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_LOAN.B
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeGeneric.mg.ed16a25074f27bb3
EmsisoftGen:Trojan.Heur.orZ@H9kNqkgb (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojanDownloader.Loan.h
AviraTR/Crypt.XPACK.Gen5
Antiy-AVLTrojan/Generic.ASMalwS.2C8F3
MicrosoftTrojan:Win32/Occamy.C
ArcabitTrojan.Heur.E6B0E2
GDataGen:Trojan.Heur.orZ@H9kNqkgb
AhnLab-V3Trojan/Win32.OnlineGameHack.R48689
McAfeeGenericRXDN-CE!ED16A25074F2
MAXmalware (ai score=100)
VBA32BScope.TrojanDownloader.Loan
MalwarebytesMalware.AI.1354457995
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_LOAN.B
RisingTrojan.Generic@ML.93 (RDMK:hl+6HA0Q/poFJ7RWBSF5kQ)
YandexTrojan.DL.Loan!A70NC6M03ss
IkarusTrojan-Downloader.Win32.Loan
FortinetW32/Generic.AC.25CAAE!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove BScope.TrojanDownloader.Loan?

BScope.TrojanDownloader.Loan removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment