Trojan

About “BScope.TrojanPSW.Arkei” infection

Malware Removal

The BScope.TrojanPSW.Arkei is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.TrojanPSW.Arkei virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine BScope.TrojanPSW.Arkei?


File Info:

name: C4D66C6E161AA6158493.mlw
path: /opt/CAPEv2/storage/binaries/728d35911fdd03c8f263e0a64aefe8951491712274c4d34aff2f8e2741144598
crc32: 25683580
md5: c4d66c6e161aa6158493ddcb6013bc5b
sha1: 1204a45ada83880ce86e68a4f2842c5588cf5fa4
sha256: 728d35911fdd03c8f263e0a64aefe8951491712274c4d34aff2f8e2741144598
sha512: aa5370f3421df468eb394bb331610c5492ed4cf7fd7a65237ebd45bbe85ed54288562b8912e12c6f80e149e71cb5e0877a3ab3a8d53e95f20571f1d3fafb5509
ssdeep: 24576:NkuTBZsS2f0ojgOquY7YerOniWqMfRKdQtdyRbM3K+0BiOoazLPPl3RuQ553138v:iuTwj0oj6K0Mh0BiOoazDPl3+
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T18DC51A135A8B0E75DDD23BB4A1CB633AA734ED30CA3A9B7FB608C53559532C46C1A742
sha3_384: 709947ea4f5d468d681b4a67bd4fc5c28831d235e890b1023943447df64ad1178c4c859c907cff11f37e87574ceb967d
ep_bytes: 83ec0cc705b813520000000000e8eee9
timestamp: 2022-07-14 16:03:17

Version Info:

0: [No Data]

BScope.TrojanPSW.Arkei also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
MalwarebytesMalware.AI.4138211663
K7GWTrojan ( 0059579c1 )
K7AntiVirusTrojan ( 0059579c1 )
CyrenW32/Trojan.HLPX-5019
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HQDK
KasperskyVHO:Trojan-Spy.Win32.Convagent.gen
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ZoneAlarmVHO:Trojan-Spy.Win32.Convagent.gen
GDataWin32.Trojan.PSE.1PMRMI2
VBA32BScope.TrojanPSW.Arkei
CylanceUnsafe
RisingStealer.Agent!8.C2 (TFE:dGZlOgXFuE80t3MBkg)
IkarusTrojan.Win32.Krypt
FortinetW32/RedLineStealer.B!tr
BitDefenderThetaGen:NN.ZexaCO.34786.D!Z@a0Hn3hf

How to remove BScope.TrojanPSW.Arkei?

BScope.TrojanPSW.Arkei removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment