Malware

OScope.Malware-Cryptor.Win32.Allaple removal

Malware Removal

The OScope.Malware-Cryptor.Win32.Allaple is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What OScope.Malware-Cryptor.Win32.Allaple virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Anomalous binary characteristics
  • Yara detections observed in process dumps, payloads or dropped files

How to determine OScope.Malware-Cryptor.Win32.Allaple?


File Info:

name: 46A17CC4AF3F168CC60F.mlw
path: /opt/CAPEv2/storage/binaries/c82836fcf470d2d7e11f08fc0f9cb46c84ef4c1b75a19045c5ec2f0301c3f325
crc32: D83DE20A
md5: 46a17cc4af3f168cc60f2650f0b8883c
sha1: 497096f4c298df7653062ee40c6a5dda24dc622a
sha256: c82836fcf470d2d7e11f08fc0f9cb46c84ef4c1b75a19045c5ec2f0301c3f325
sha512: aaac0c007e7d80e5727fa7f199528d7736b1ef5b4ecb92a7873df0f99ec2a8e6629e8055c537d39aa1cad6f7ae657d42a60a90a74a20a2d84b16ee33bbbeab8f
ssdeep: 3072:CEz48/x4FFG1qwnmg7O2NhMF6CRDi47J9GySgWLvm/t2A:Cy8d+mg7O2NhRv4lSgWTm/t
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EB04AF1EEB48CC06E76AA9B470CDD1F6AA279CE425202967FE8C305D10FC95C1E7917E
sha3_384: f214646a4ef7af78ab86384bfc4f1a023c5332cff420d233c1f437dfa9404704a27f2e0535d6b3a2d7b7230b03897b96
ep_bytes: 0fb6dc6603d5c744248cbd8e40000fb6
timestamp: 1970-01-25 07:06:40

Version Info:

0: [No Data]

OScope.Malware-Cryptor.Win32.Allaple also known as:

BkavW32.CrypticB.Trojan
Elasticmalicious (high confidence)
DrWebTrojan.Starman.6712
MicroWorld-eScanWin32.Worm.Allaple.Gen
CAT-QuickHealI-Worm.Allaple.gen
SkyhighBehavesLike.Win32.RAHack.cc
McAfeeW32/RAHack
MalwarebytesGeneric.Malware.AI.DDS
VIPREWin32.Worm.Allaple.Gen
SangforSuspicious.Win32.Save.a
K7AntiVirusNetWorm ( f10000041 )
K7GWNetWorm ( f10000041 )
Cybereasonmalicious.4af3f1
BitDefenderThetaAI:FileInfector.9E9A3AD516
VirITWorm.Win32.Allaple.J
SymantecW32.Kakavex
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Allaple.Gen
TrendMicro-HouseCallWORM_ALLAPLE.PF
ClamAVWin.Worm.Allaple-5
KasperskyNet-Worm.Win32.Allaple.e
BitDefenderWin32.Worm.Allaple.Gen
NANO-AntivirusVirus.Win32.Allaple.bkbmt
SUPERAntiSpywareWorm.Allaple
AvastWin32:Allaple [Wrm]
TencentWorm.Win32.Allaple.s
EmsisoftWin32.Worm.Allaple.Gen (B)
GoogleDetected
F-SecureNet-Worm:W32/Allaple.gen!B
BaiduWin32.Trojan.Kryptik.gf
ZillyaWorm.Allaple.Win32.1
TrendMicroWORM_ALLAPLE.PF
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.46a17cc4af3f168c
SophosW32/Allaple-F
SentinelOneStatic AI – Malicious PE
JiangminWorm/Allaple.Gen
VaristW32/RAHack.A.gen!Eldorado
AviraW32/Virut.AX
MAXmalware (ai score=83)
Antiy-AVLWorm[Net]/Win32.Allaple.gen
KingsoftWorm.AllApleT.cz.67868
MicrosoftWorm:Win32/Allaple.A
XcitiumNetWorm.Win32.Allaple.GEN@1ei64a
ArcabitWin32.Worm.Allaple.Gen
ViRobotWorm.Win32.Allaple.Gen
ZoneAlarmNet-Worm.Win32.Allaple.e
GDataWin32.Worm.Allaple.Gen
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Starman.Gen
Acronissuspicious
VBA32OScope.Malware-Cryptor.Win32.Allaple
ALYacWin32.Worm.Allaple.Gen
TACHYONWorm/W32.Allaple.Gen
Cylanceunsafe
PandaW32/Rahack.gen.worm
RisingWorm.Allaple!1.AB29 (CLASSIC)
YandexWin32.Virut.Gen.4
IkarusNet-Worm.Win32.Allaple
MaxSecurePoly.Worm.Allaple
FortinetW32/Allaple.gen!tr
AVGWin32:Allaple [Wrm]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)
alibabacloudVirus:Win/Virut.Gen

How to remove OScope.Malware-Cryptor.Win32.Allaple?

OScope.Malware-Cryptor.Win32.Allaple removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment