Ransom Trojan

Should I remove “BScope.TrojanRansom.Xorist”?

Malware Removal

The BScope.TrojanRansom.Xorist is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.TrojanRansom.Xorist virus can do?

  • Mimics the file times of a Windows system file
  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Writes a potential ransom message to disk
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine BScope.TrojanRansom.Xorist?


File Info:

crc32: 0AB4BCA6
md5: 089e48496f836b02cae72edbacf2ef87
name: 089E48496F836B02CAE72EDBACF2EF87.mlw
sha1: a3148733ece4263949a921803c309ccf96d57496
sha256: f0175b1968af3d5c9f70d188ca387f6419d853fc7ab1c0b823749c0424e661a4
sha512: 7d0cccfffe63856bf458b896f45dc3992fdfa7e39429bca65e85a80b39732dcca47715574ac805fcc849df70d90c1bea476381b80b67ab65f673dbc82c52f8b8
ssdeep: 384:3c7zm17yVc4J4NAYJI2Ypd1vpEhxTDay4n1:s7LZ4N1JPYp2nfay41
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

BScope.TrojanRansom.Xorist also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005451b81 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.94
CynetMalicious (score: 100)
CAT-QuickHealRansom.Genasom.FO4
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.3051
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaRansom:Win32/generic.ali2000010
K7GWTrojan ( 005451b81 )
Cybereasonmalicious.96f836
CyrenW32/Heuristic-119!Eldorado
SymantecRansom.CryptoTorLocker
ESET-NOD32a variant of Win32/Filecoder.Q
APEXMalicious
AvastWin32:Malware-gen
KasperskyUDS:Trojan.Win32.Generic
BitDefenderTrojan.Lethic.Gen.9
NANO-AntivirusTrojan.Win32.Fraud.cveddi
ViRobotTrojan.Win32.Ransom.978432
MicroWorld-eScanTrojan.Lethic.Gen.9
TencentMalware.Win32.Gencirc.114be12e
Ad-AwareTrojan.Lethic.Gen.9
SophosMal/Generic-S
ComodoTrojWare.Win32.Kryptik.ER@4o1ar2
BitDefenderThetaAI:Packer.91A967CC1F
VIPRETrojan.Win32.Generic.pak!cobra
McAfee-GW-EditionGenericRXFW-AH!089E48496F83
FireEyeGeneric.mg.089e48496f836b02
EmsisoftTrojan.Lethic.Gen.9 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.hkx
WebrootW32.Trojan.Lethic.Gen
AviraTR/Fraud.Gen
eGambitGeneric.Malware
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:Win32/Sorikrypt.A
GDataTrojan.Lethic.Gen.9
AhnLab-V3Trojan/Win32.Xorist.R124186
Acronissuspicious
McAfeeGenericRXFW-AH!089E48496F83
MAXmalware (ai score=100)
VBA32BScope.TrojanRansom.Xorist
PandaTrj/RansomXor.A
RisingRansom.Sorikrypt!8.8822 (CLOUD)
YandexTrojan.GenAsa!Lm0QpYhTqAM
IkarusTrojan.Win32.Ransom
FortinetW32/Xorist.DD8C!tr.ransom
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove BScope.TrojanRansom.Xorist?

BScope.TrojanRansom.Xorist removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment