Trojan

What is “BScope.TrojanProxy.Glupteba”?

Malware Removal

The BScope.TrojanProxy.Glupteba is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.TrojanProxy.Glupteba virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine BScope.TrojanProxy.Glupteba?


File Info:

crc32: 7D8953A3
md5: 899820af1eb39d80141c7445f0833ce1
name: cl.exe
sha1: eedb8efb384649e714987599a326dd094cd8237e
sha256: 11ebd6075963548544704eb07b7a345399a0cf90c2b5f9e772b2eb171d75c4a5
sha512: ac06d9980a3f85e3027970ade4bfe044121b570e4d4bf2d5f292fa26d8f50a592762ee09bca6bfdd4b4a1d805fe033f806d2ab777b86ad78deedab92f70f2da6
ssdeep: 12288:iSggkoWafbrqrfjq8bb2UiXwIWDHB1mfKJqUci:hggkoWafq79/J4rWDhEfK6i
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2020
FileVersion: 7.2.1.1
ProductVersion: 7.2.1.1
Translation: 0x0409 0x04b0

BScope.TrojanProxy.Glupteba also known as:

MicroWorld-eScanGen:Variant.Razy.553929
FireEyeGeneric.mg.899820af1eb39d80
McAfeeGenericRXHS-AA!899820AF1EB3
MalwarebytesTrojan.Glupteba
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 0056559e1 )
BitDefenderGen:Variant.Razy.553929
K7GWTrojan ( 0056559e1 )
Cybereasonmalicious.f1eb39
CyrenW32/S-3ebf0797!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
GDataGen:Variant.Razy.553929
KasperskyTrojan.Win32.Kepiten.a
TencentMalware.Win32.Gencirc.10b9c0f4
Ad-AwareGen:Variant.Razy.553929
SophosTroj/Glupteba-M
F-SecureTrojan.TR/Crypt.XPACK.Gen2
DrWebTrojan.SpyBot.961
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Dropper.hc
MaxSecureTrojan.Malware.121218.susgen
Trapminesuspicious.low.ml.score
EmsisoftGen:Variant.Razy.553929 (B)
SentinelOneDFI – Malicious PE
F-ProtW32/S-3ebf0797!Eldorado
JiangminTrojan.Kepiten.a
WebrootW32.Trojan.Gen
AviraTR/Crypt.XPACK.Gen2
Endgamemalicious (high confidence)
ArcabitTrojan.Razy.D873C9
SUPERAntiSpywareTrojan.Agent/Gen-Glupteba
ZoneAlarmTrojan.Win32.Kepiten.a
MicrosoftTrojan:Win32/Glupteba.PA!MTB
AhnLab-V3Malware/Win32.Generic.R332075
Acronissuspicious
ALYacGen:Variant.Razy.553929
VBA32BScope.TrojanProxy.Glupteba
CylanceUnsafe
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/Glupteba.BC
TrendMicro-HouseCallTROJ_GEN.R03BC0DEJ20
RisingTrojan.Glupteba!1.BC88 (RDMK:cmRtazpEogX1QjoxP/yWPn+/mVRd)
MAXmalware (ai score=82)
FortinetW32/Glupteba.B!tr
BitDefenderThetaGen:NN.ZexaF.34110.Hu0@ae31gwik
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360Win32/Trojan.9ef

How to remove BScope.TrojanProxy.Glupteba?

BScope.TrojanProxy.Glupteba removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment