Spy Trojan

BScope.TrojanSpy.Kratos (file analysis)

Malware Removal

The BScope.TrojanSpy.Kratos is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.TrojanSpy.Kratos virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Harvests cookies for information gathering

How to determine BScope.TrojanSpy.Kratos?


File Info:

name: 41A5E60F3F4D84429132.mlw
path: /opt/CAPEv2/storage/binaries/08dc4a79a9766a7c6d8e5a0d66219b8b1e0603a63a3e88f1370cfa53dd2fd07d
crc32: 2AAFCBCF
md5: 41a5e60f3f4d8442913209ed0b19faea
sha1: e849780e0543438cd91db8447df99b05796d72b8
sha256: 08dc4a79a9766a7c6d8e5a0d66219b8b1e0603a63a3e88f1370cfa53dd2fd07d
sha512: 952b55d891d223ab0f9e5847a6c2e4d9b4a3fbe9db9d9fdb6bb1558282dac05d2d12a9c8255067170defa5afd891e62d5a960e999c3fddaa631d5953360cd6f2
ssdeep: 98304:m5PfKblPceGy6dXZaZ9olnKbttEEHOXNC:YfKpPcRZdXZGuYttxQC
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C1162361B6D2D278C05935BC5EB0DE9929B93F5039A887CEF7643D6C6F30653C88930A
sha3_384: 0c7cf3bf2aa8a95ab7ee882e822ccd4a7d49bfd7533e217c7f71b62872e7bbf1b92ead183913733b25f2b85f7aa340fa
ep_bytes: e885630000e978feffff8bff558bec56
timestamp: 2016-01-03 11:34:21

Version Info:

0: [No Data]

BScope.TrojanSpy.Kratos also known as:

BkavW32.AIDetect.malware2
McAfeeArtemis!41A5E60F3F4D
MalwarebytesGeneric.Malware/Suspicious
SangforTrojan.MSIL.Cryptor.mt
CrowdStrikewin/malicious_confidence_70% (D)
BitDefenderThetaGen:NN.ZexaF.34212.bqW@aWeWM0ob
TrendMicro-HouseCallTROJ_GEN.R002H01JK21
AvastWin32:Malware-gen
McAfee-GW-EditionBehavesLike.Win32.Generic.rc
Paloaltogeneric.ml
JiangminBackdoor.Xtreme.blw
Antiy-AVLTrojan/Generic.ASMalwS.27C68B5
GridinsoftRansom.Win32.Miner.sa
MicrosoftTrojan:MSIL/Cryptor
CynetMalicious (score: 100)
VBA32BScope.TrojanSpy.Kratos
APEXMalicious
RisingDropper.Generic!8.35E (CLOUD)
IkarusTrojan.Dropper
AVGWin32:Malware-gen
Cybereasonmalicious.f3f4d8

How to remove BScope.TrojanSpy.Kratos?

BScope.TrojanSpy.Kratos removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment