Trojan

About “Trojan-Dropper.Win32.Scrop.acvr” infection

Malware Removal

The Trojan-Dropper.Win32.Scrop.acvr is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Dropper.Win32.Scrop.acvr virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Latvian
  • The binary likely contains encrypted or compressed data.
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Installs itself for autorun at Windows startup
  • Anomalous binary characteristics

How to determine Trojan-Dropper.Win32.Scrop.acvr?


File Info:

crc32: 57E8E34E
md5: 7ee3b6861baf2101a7ecc89ea1ac06fe
name: tmp2uul48e5
sha1: 382426793cb972e928ef47ea04274b4cd96be291
sha256: fee0163400b3be1fa4b548a4784cb097eea6f25d9ba1693aa5f056b7ea78d1f9
sha512: 864a3aa4a47d3fd4cbdcd73df44c9532a339f855eb710e9513c897cb4658ab20c9b84e6fdd990046ae056514edc5b8be7016f7277ce606700b72b6f44b54b566
ssdeep: 12288:UEjBBTUusZMzGrzTAISKEXFWitg6Bn08UpZwl:UE3T47rzUKEVWiJnWc
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: oyz3xswcesv.ixi
FileVersionOld: 1.2.0.1
ProductVersion: 1.0.4.1
Copyrighd: Copyrighd (C) 2020, odfgbiv
Translation: 0x0842 0x04c4

Trojan-Dropper.Win32.Scrop.acvr also known as:

BkavHW32.Packed.
MicroWorld-eScanTrojan.GenericKD.43356581
FireEyeGeneric.mg.7ee3b6861baf2101
Qihoo-360Win32/Trojan.Dropper.0be
McAfeePacked-GBO!7EE3B6861BAF
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.43356581
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.93cb97
TrendMicroTROJ_GEN.R002C0RFJ20
BitDefenderThetaGen:NN.ZexaF.34128.JC0@aqXRQDlc
F-ProtW32/Danabot.R.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HEDZ
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Malware.Generic-8119045-0
GDataTrojan.GenericKD.43356581
KasperskyTrojan-Dropper.Win32.Scrop.acvr
AlibabaTrojanDropper:Win32/Scrop.f956f1d4
ViRobotTrojan.Win32.Z.Wacatac.586240.L
AegisLabTrojan.Win32.Malicious.4!c
AvastWin32:PWSX-gen [Trj]
RisingMalware.Obscure/Heur!1.9E03 (CLOUD)
Ad-AwareTrojan.GenericKD.43356581
EmsisoftTrojan.GenericKD.43356581 (B)
DrWebTrojan.MulDrop11.52446
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Generic.hc
Trapminesuspicious.low.ml.score
SophosMal/GandCrab-G
IkarusTrojan.Win32.Crypt
CyrenW32/Danabot.R.gen!Eldorado
WebrootW32.Trojan.Gen
MAXmalware (ai score=84)
Antiy-AVLTrojan[Dropper]/Win32.Scrop
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D29591A5
AhnLab-V3Trojan/Win32.Danabot.R340796
ZoneAlarmTrojan-Dropper.Win32.Scrop.acvr
MicrosoftTrojan:Win32/CryptInject.RBA!MTB
CynetMalicious (score: 100)
Acronissuspicious
VBA32BScope.Trojan.AET.281105
ALYacTrojan.GenericKD.43356581
MalwarebytesTrojan.Downloader
TrendMicro-HouseCallTROJ_GEN.R002C0RFJ20
TencentWin32.Trojan-dropper.Scrop.Angd
YandexTrojan.Kryptik!AFemuCfLI1w
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_84%
FortinetW32/Malicious_Behavior.VEX
AVGWin32:PWSX-gen [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Trojan-Dropper.Win32.Scrop.acvr?

Trojan-Dropper.Win32.Scrop.acvr removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment