Trojan

Trojan.Win32.Bsymem.adlz malicious file

Malware Removal

The Trojan.Win32.Bsymem.adlz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Bsymem.adlz virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • A file was accessed within the Public folder.
  • CAPE extracted potentially suspicious content
  • A HTTP/S link was seen in a script or command line
  • Executed a very long command line or script command which may be indicative of chained commands or obfuscation
  • Authenticode signature is invalid
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • Appears to use command line obfuscation
  • Attempts to modify Windows Defender using PowerShell
  • Attempts to execute suspicious powershell command arguments

How to determine Trojan.Win32.Bsymem.adlz?


File Info:

name: 2D82EC0905DE054CD685.mlw
path: /opt/CAPEv2/storage/binaries/82f585a45f06cd6c344d3bf8fe6081a074ac38f83015d9675a2dc4e2363f5c20
crc32: 5CE6AB7D
md5: 2d82ec0905de054cd685e6a52e2d9442
sha1: 1fb5c5b876563affb7ee45872e286cf0ffddb965
sha256: 82f585a45f06cd6c344d3bf8fe6081a074ac38f83015d9675a2dc4e2363f5c20
sha512: eeee0806ef980230966d3e6318d974fe6faf02b0b7952a1671cbc5fdff66c7cef68218483433a72ba6277ab9c5f556c7d3a39e2ad6851f42c4705f3d7a2666e4
ssdeep: 48:6e++Z+WjJaqoTiGBc798PXhMCCnyVJeYUT0KerZv8B13aLlzUR:5Z+mQqoT5qihXkyVJezCkv3aLlYR
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C091A4EBE728DD29C80F11397B72062167B2D3632582427BE75845F5DBC1896AD0F20D
sha3_384: 4fbe7db15023f7ead256bdd5ced7adaa906df3ea452ba1e56c36fed13c1f9587ca2ea6657327a2e34e98906e798395ff
ep_bytes: 5589e581ec0800000090b80400000050
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Bsymem.adlz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Bsymem.4!c
MicroWorld-eScanGen:Variant.Zusy.401118
FireEyeGeneric.mg.2d82ec0905de054c
McAfeeGenericRXSM-RV!2D82EC0905DE
MalwarebytesTrojan.Downloader
ZillyaTrojan.Bsymem.Win32.3303
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005883fd1 )
AlibabaTrojan:Win32/Bsymem.2c2f0913
K7GWTrojan ( 005883fd1 )
Cybereasonmalicious.905de0
CyrenW32/Nitol.AO.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Agent.ADMO
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Bsymem.adlz
BitDefenderGen:Variant.Zusy.401118
AvastWin32:TrojanX-gen [Trj]
TencentMalware.Win32.Gencirc.13af0a89
SophosMal/Generic-S
F-SecureHeuristic.HEUR/AGEN.1339743
DrWebTrojan.DownLoader43.43947
VIPREGen:Variant.Zusy.401118
McAfee-GW-EditionGenericRXSM-RV!2D82EC0905DE
EmsisoftTrojan.Agent (A)
IkarusTrojan.Win32.Agent
GDataGen:Variant.Zusy.401118
JiangminTrojan.Bsymem.bof
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1339743
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.Agent
XcitiumMalware@#2veq0fn293sbq
ArcabitTrojan.Zusy.D61EDE
ZoneAlarmTrojan.Win32.Bsymem.adlz
MicrosoftTrojan:Win32/Vindor!pz
GoogleDetected
AhnLab-V3Trojan/Win.Generic.R440300
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.36318.aqW@aewLqkci
VBA32BScope.Trojan.Nitol
Cylanceunsafe
PandaTrj/CI.A
APEXMalicious
RisingBackdoor.DcRat!8.129D9 (TFE:1:BNER4NzZWDL)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.1728101.susgen
FortinetW32/Tiny.NFR!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Win32.Bsymem.adlz?

Trojan.Win32.Bsymem.adlz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment