Malware

ML/PE-A + Troj/Agent-BCCO malicious file

Malware Removal

The ML/PE-A + Troj/Agent-BCCO is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What ML/PE-A + Troj/Agent-BCCO virus can do?

  • Reads data out of its own binary image
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Creates a slightly modified copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine ML/PE-A + Troj/Agent-BCCO?


File Info:

crc32: 2B3266A6
md5: b419690f6b1c8c3f80dfc427b4229832
name: B419690F6B1C8C3F80DFC427B4229832.mlw
sha1: 7005c76bd124985c9f17fcfbb78d098b9564e4cd
sha256: 447b819e1a74380df2e91cf45cd9e8d5872372b27abade91387845cd4a8511b8
sha512: ce3b42370a972b3da4e1e0afc2d52b58936e7fa70326eae63ac463dd9e429ba078c1ff70cb3af4b33e60f3fe3e937c45a0a3ebc38a0fb6aa7415919ed7bee8c5
ssdeep: 1536:nSgy19JSVO1ONn511/tivXZzOmRktzYX5mUqta0jspzFtt05ctUdSb:nS7BE51XivpzOcktzjUhFCctUC
type: MS-DOS executable, MZ for MS-DOS

Version Info:

0: [No Data]

ML/PE-A + Troj/Agent-BCCO also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.35191545
FireEyeGeneric.mg.b419690f6b1c8c3f
CAT-QuickHealTrojan.GenericCS.S18137171
ALYacTrojan.GenericKD.35191545
CylanceUnsafe
VIPREPacked.Win32.Krunchy (v)
SangforMalware
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderTrojan.GenericKD.35191545
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderThetaAI:Packer.AD5B98AA1F
CyrenW32/S-dd34b2aa!Eldorado
SymantecML.Attribute.HighConfidence
AvastWin32:TrojanX-gen [Trj]
ClamAVWin.Packed.kkrunchy-7049457-1
KasperskyHEUR:Trojan.Win32.Generic
NANO-AntivirusTrojan.Win32.GenKryptik.fpevjn
APEXMalicious
RisingTrojan.Shyape!1.B5E8 (CLASSIC)
Ad-AwareTrojan.GenericKD.35191545
EmsisoftTrojan.GenericKD.35191545 (B)
ComodoTrojWare.Win32.Trojan.Inject.~INC@1f34i5
F-SecureTrojan.TR/Drop.Dinwod.zlvkz
DrWebTrojan.Inject2.4876
McAfee-GW-EditionBehavesLike.Win32.Generic.kc
SophosML/PE-A + Troj/Agent-BCCO
IkarusTrojan-Dropper.Win32.Dinwod
JiangminTrojan.Generic.dfvtj
AviraTR/Drop.Dinwod.zlvkz
Antiy-AVLTrojan[Backdoor]/Win32.Bifrose
MicrosoftTrojanDropper:Win32/Dinwod
ArcabitTrojan.Generic.D218FAF9
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataWin32.Trojan.PSE.1C10TCG
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Dinwod.R271738
Acronissuspicious
McAfeeTrojan-FRDU!B419690F6B1C
MAXmalware (ai score=85)
MalwarebytesGeneric.Trojan.Dropper.DDS
TencentMalware.Win32.Gencirc.10ce019b
YandexTrojan.Agent!8RPDW20jJrA
SentinelOneStatic AI – Malicious PE
FortinetW32/Kryptik.BPCL!tr
AVGWin32:TrojanX-gen [Trj]
Qihoo-360HEUR/QVM19.1.08A1.Malware.Gen

How to remove ML/PE-A + Troj/Agent-BCCO?

ML/PE-A + Troj/Agent-BCCO removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment