Trojan

BScope.TrojanPSW.Kpot information

Malware Removal

The BScope.TrojanPSW.Kpot is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.TrojanPSW.Kpot virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • At least one process apparently crashed during execution
  • Dynamic (imported) function loading detected
  • Performs HTTP requests potentially not found in PCAP.
  • HTTPS urls from behavior.
  • Authenticode signature is invalid
  • Attempts to modify proxy settings

How to determine BScope.TrojanPSW.Kpot?


File Info:

name: A9F8C26D75CAF97B5C43.mlw
path: /opt/CAPEv2/storage/binaries/9211ebf25c3cd3641451c95c50c1d3b7b2a4c53c36fa36564f3c1a177a0cda3d
crc32: 9BFAC6CD
md5: a9f8c26d75caf97b5c43778f80b1a1c6
sha1: 83e4b6294b472b6650926ce4a6dec850812d9561
sha256: 9211ebf25c3cd3641451c95c50c1d3b7b2a4c53c36fa36564f3c1a177a0cda3d
sha512: 6e93e6a7c0ba130a6dd774778ad52bcbd0af6feffa471f74afc3250abc86089241d69fef09efad1e146b2868586d593621d0b735d870d0930a7c6a63281cb5e3
ssdeep: 1536:zaNBRWNvAc6tZQW62hXkvE9ADrXj58pa2+3MmjBvd2csWfcdeaUdcxPeED:Gr8v76tZQWxv9ADrXjKU20jB12feaQc1
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T125735913B5D2C471E4B619324874D9B18A3FFD210F65DDAB2788173A4F700D1AA3AE6B
sha3_384: 5d267f90ed1abbfa793124fd5c89cec77ba4633ef5fa103e364659ef3601fa3066c8f856b2f164e9981d3f9f6c328486
ep_bytes: e8ec020000e97afeffff558beca11830
timestamp: 2022-06-08 21:03:28

Version Info:

0: [No Data]

BScope.TrojanPSW.Kpot also known as:

BkavW32.AIDetect.malware2
FireEyeGeneric.mg.a9f8c26d75caf97b
CylanceUnsafe
K7GWTrojan-Downloader ( 00546da01 )
Cybereasonmalicious.94b472
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/TrojanDownloader.Small.BBX
APEXMalicious
KasperskyHEUR:Trojan-Downloader.Win32.Generic
AvastWin32:DropperX-gen [Drp]
McAfee-GW-EditionBehavesLike.Win32.Generic.lh
SentinelOneStatic AI – Suspicious PE
ZoneAlarmUDS:DangerousObject.Multi.Generic
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
Acronissuspicious
McAfeeArtemis!A9F8C26D75CA
VBA32BScope.TrojanPSW.Kpot
RisingDownloader.Small!8.B41 (RDMK:cmRtazoHt7eeaH13uvIBjYlmRach)
MaxSecureTrojan.Malware.300983.susgen
BitDefenderThetaGen:NN.ZexaF.34712.eqW@ae2B9cl
AVGWin32:DropperX-gen [Drp]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove BScope.TrojanPSW.Kpot?

BScope.TrojanPSW.Kpot removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment