Malware

Win32/Packed.Bccrypt.C suspicious removal guide

Malware Removal

The Win32/Packed.Bccrypt.C suspicious is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Packed.Bccrypt.C suspicious virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Win32/Packed.Bccrypt.C suspicious?


File Info:

name: B342B9D519F6AEA3B76B.mlw
path: /opt/CAPEv2/storage/binaries/ac52441d95177f4db2ac78f74c3584420de4519ac6799a31513ee48877c18a67
crc32: BC4322A7
md5: b342b9d519f6aea3b76bc94acb9f8237
sha1: 134d09e2c8daec4c519a370c5040d03c80048930
sha256: ac52441d95177f4db2ac78f74c3584420de4519ac6799a31513ee48877c18a67
sha512: 7bbd3fd00a7b338f782defcdd896c53efaa9f7a8f4d2e9e2f0a73cb8303f9360e2e30990d99d111841d0b6686829aec19a44c95f2e9fb825c3f15d7ba74021dc
ssdeep: 196608:4wacV0Tyc9nkY4e8Y3txM/KxrAwXyexLfRmlsV5ieXxE5B0NiQ5lsV5ieXx:nai0T9nkWJHhuB0gHh
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CD86BE00D48FC237EE9288B7ED5848187AFA97D04B609EF391952E7245F4DE05B39F89
sha3_384: 457a33ae59bfb683e5391dcec396d253eeab688cae80c250f3aa12da27ad228e636a6705d5879189317af8ac37f70850
ep_bytes: eb1066623a432b2b484f4f4b90e998b0
timestamp: 2023-03-08 09:09:26

Version Info:

Comments: Www.ChinaPYG.CoM
CompanyName: 飘云阁官方论坛
FileDescription: Baymax Patcher Tools
FileVersion: 2, 0, 3, 1027
InternalName: PatchUi.exe
LegalCopyright: Copyright (C) 2020
OriginalFilename: PatchUi.exe
ProductName: PatchUi
ProductVersion: 2, 0, 3, 1027
Translation: 0x0409 0x04b0

Win32/Packed.Bccrypt.C suspicious also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanTrojan.GenericKDZ.99441
ClamAVWin.Tool.Lazy-9979945-0
FireEyeTrojan.GenericKDZ.99441
ALYacTrojan.GenericKDZ.99441
Cylanceunsafe
ZillyaTrojan.Agent.Win32.3470312
SangforTrojan.Win32.Packed.Vtfy
K7AntiVirusTrojan ( 0059aa431 )
AlibabaPacked:Win32/Bccrypt.2d3f330e
K7GWTrojan ( 0059aa431 )
CyrenW32/Injector.AFN.gen!Eldorado
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Packed.Bccrypt.C suspicious
APEXMalicious
CynetMalicious (score: 99)
BitDefenderTrojan.GenericKDZ.99441
NANO-AntivirusVirus.Win32.Gen.ccmw
EmsisoftTrojan.GenericKDZ.99441 (B)
F-SecureHeuristic.HEUR/AGEN.1326392
VIPRETrojan.GenericKDZ.99441
McAfee-GW-EditionPUP-XTF-HV
Trapminemalicious.moderate.ml.score
SophosMal/Generic-S
GDataTrojan.GenericKDZ.99441
JiangminTrojan.RazeSpyware.c
AviraHEUR/AGEN.1326392
Antiy-AVLHackTool/Win32.Patcher
ArcabitTrojan.Generic.D18471
MicrosoftTrojan:Win32/Wacatac.A!ml
GoogleDetected
AhnLab-V3Worm/Win.Zorex.C4478499
McAfeeArtemis!B342B9D519F6
MAXmalware (ai score=89)
VBA32BScope.Trojan.MulDrop
MalwarebytesGeneric.Malware/Suspicious
TrendMicro-HouseCallTROJ_GEN.R002H0CEO23
RisingTrojan.Generic@AI.100 (RDML:OxbtL24uca6e6+lRnHmgRw)
YandexPUP.Patcher!gR//Lbd0mb0
IkarusPUA.DllInject
MaxSecureTrojan.Malware.208895783.susgen
FortinetRiskware/PUP_XTF
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Win32/Packed.Bccrypt.C suspicious?

Win32/Packed.Bccrypt.C suspicious removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment