Trojan

BScope.TrojanPSW.Fareit information

Malware Removal

The BScope.TrojanPSW.Fareit is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.TrojanPSW.Fareit virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
www.atualizatabela.online
www.trailleraddict.com
www.ebosh44.com
www.autotronicsservices.com

How to determine BScope.TrojanPSW.Fareit?


File Info:

crc32: B6EBC38B
md5: 9259bccede18554e39e934b8c97a7afd
name: winlog.exe
sha1: 56d8e0c9f069cb3e78d9f37e98a060aaafb67c6e
sha256: 3cc7aef9e1d8124a4c3ed218da4e9d669561ccc7bce8e025d9747d343cc77e61
sha512: ba68a2e650da6afbff7e07cbaf7188ff540fdc6ebae4ec0e2a97a04422a017329c4bddb5618ac9e36b715ee0a6a489c96c00d3517df76d3c8f399d0bb689fe77
ssdeep: 12288:FkXOU51w5qnnf9aG3EV+M6qzvXkqYJZcbMMv3uwbV2gOqiZdkO:OeMbnn7EIqzATiMMv+a2gDsd
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

BScope.TrojanPSW.Fareit also known as:

BkavW32.AIDetectVM.malware1
MicroWorld-eScanTrojan.Delf.FareIt.Gen.7
FireEyeGeneric.mg.9259bccede18554e
McAfeeFareit-FTB!9259BCCEDE18
CylanceUnsafe
K7AntiVirusTrojan ( 0056a5691 )
BitDefenderTrojan.Delf.FareIt.Gen.7
Cybereasonmalicious.9f069c
TrendMicroTSPY_HPLOKI.SMBD
F-ProtW32/Trojan3.APHQ
SymantecML.Attribute.HighConfidence
APEXMalicious
KasperskyHEUR:Trojan.Win32.Kryptik.gen
RisingTrojan.Injector!1.C879 (C64:YzY0Oi7ioRfE5txK)
Endgamemalicious (high confidence)
EmsisoftTrojan.Delf.FareIt.Gen.7 (B)
DrWebBackDoor.SpyBotNET.25
Invinceaheuristic
FortinetW32/Injector.EMOY!tr
IkarusWin32.Outbreak
CyrenW32/Trojan.YZUU-7588
WebrootW32.Trojan.Gen
MAXmalware (ai score=86)
ArcabitTrojan.Delf.FareIt.Gen.7
ZoneAlarmHEUR:Trojan.Win32.Kryptik.gen
MicrosoftPWS:Win32/Fareit.AQ!MTB
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Inject.C4160396
Acronissuspicious
VBA32BScope.TrojanPSW.Fareit
ALYacTrojan.Delf.FareIt.Gen.7
Ad-AwareTrojan.Delf.FareIt.Gen.7
MalwarebytesSpyware.PasswordStealer
ESET-NOD32a variant of Win32/Injector.EMOP
TrendMicro-HouseCallTSPY_HPLOKI.SMBD
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_99%
GDataTrojan.Delf.FareIt.Gen.7
BitDefenderThetaGen:NN.ZelphiF.34136.TGX@aS2rsFbi
AVGFileRepMalware
CrowdStrikewin/malicious_confidence_80% (D)
Qihoo-360Generic/Trojan.e9b

How to remove BScope.TrojanPSW.Fareit?

BScope.TrojanPSW.Fareit removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment