Worm

BScope.Worm.Python (file analysis)

Malware Removal

The BScope.Worm.Python is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BScope.Worm.Python virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine BScope.Worm.Python?


File Info:

name: 9C2BD0A115DBE4A55985.mlw
path: /opt/CAPEv2/storage/binaries/9107f2f33bcf79beb2937e23ca26d00bce61d5108d17152d55d8e03c608a55cd
crc32: E994B7AF
md5: 9c2bd0a115dbe4a559859f9d4906d207
sha1: 693353a068fc9d3496c1c13f3ec1612bedc67529
sha256: 9107f2f33bcf79beb2937e23ca26d00bce61d5108d17152d55d8e03c608a55cd
sha512: f2be58a52c865714eb405e0c0ea7ba670748874eaa7a768f59be4c0d062f5011cfa9d2ae424bf2cc0b65f91eb394c1af23a4ffda472d37b916adf3a2f73535b8
ssdeep: 12288:T8FW0sDbaiAyRsOfSsCcraLdnXOyOsicFKA4Y7WaRoh0rqivllfQTisqEchiocva:T8FCGLOraLdXOZZcCLhRivffeZ42vrBw
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19DE57BE9B010B074D8A944BFAB2E7AB18D9CDBA233032CF375F414D786296D5657620F
sha3_384: 5824f837cd07cdd075895eec59bfb5257404b78775f238b7f9274d3d4cfbddb9b3d41d0dc3b3c562c73474cd870ed8a6
ep_bytes: e872030000e936fdffff8bff558bec8b
timestamp: 2008-11-10 09:40:35

Version Info:

0: [No Data]

BScope.Worm.Python also known as:

BkavW32.AIDetect.malware2
DrWebPython.Siggen.13
FireEyeTrojan.Agent.FKUK
ALYacTrojan.Agent.FKUK
ZillyaWorm.Agent.Win32.42197
K7AntiVirusTrojan ( 004fffe01 )
K7GWTrojan ( 004fffe01 )
Cybereasonmalicious.115dbe
ESET-NOD32Python/Agent.K
CynetMalicious (score: 99)
KasperskyHEUR:Worm.Python.Generic
BitDefenderTrojan.Agent.FKUK
NANO-AntivirusTrojan.Py2Exe.PyAgent.eqmocu
MicroWorld-eScanTrojan.Agent.FKUK
Ad-AwareTrojan.Agent.FKUK
EmsisoftTrojan.Agent.FKUK (B)
IkarusWorm.Python.Agent
GDataTrojan.Agent.FKUK
AviraHEUR/AGEN.1126411
MAXmalware (ai score=86)
ArcabitTrojan.Agent.FKUK
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
AhnLab-V3Trojan/Win32.Blakamba.C2411905
McAfeeGenericRXAA-AA!9C2BD0A115DB
TACHYONTrojan/W32.Blakamba.3022848
VBA32BScope.Worm.Python
APEXMalicious
RisingTrojan.Generic@ML.83 (RDML:XcPnFLHhmGKWK4bUXjHvEw)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.K!tr

How to remove BScope.Worm.Python?

BScope.Worm.Python removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment