Malware

How to remove “Application.Fugrafa.5”?

Malware Removal

The Application.Fugrafa.5 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Fugrafa.5 virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • The binary likely contains encrypted or compressed data.
  • Queries information on disks, possibly for anti-virtualization
  • Detects the presence of Wine emulator via registry key
  • Checks the version of Bios, possibly for anti-virtualization
  • Attempts to modify proxy settings
  • Collects information to fingerprint the system

Related domains:

z.whorecord.xyz
a.tomx.xyz
api-ocean.info

How to determine Application.Fugrafa.5?


File Info:

crc32: 8831294C
md5: 28dfcf128d64989f480a2f9346901394
name: 228.exe
sha1: 0351b3d9d1dd90d52b679feac11ee5bb3b52ddc4
sha256: 98d6a46a68f280180ef55ff3c562d076a146e77840eff992916137d96b3ebe12
sha512: 4a9b57252ef9578ca47f23b61343dd0f547047b968f32ff455bcfe0d093295df8d8afed5bc7308907b775a482f543df0e0fb030bdc92aa66042465a5dc66e62e
ssdeep: 24576:9N0nGdduQdFH3rmCq+Bl5n/AphJgGA7jZlfdkY8AvryvcO4zsAvI56:UG13rmv+T5nYphe5wATyvcO4zsAQI
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

ProductVersion: 2.2.0.197
FileVersion: 2.2.0.197
FileDescription: Resource Compiler
Translation: 0x0409 0x04e4

Application.Fugrafa.5 also known as:

DrWebTrojan.InstallCube.3551
MicroWorld-eScanGen:Variant.Application.Fugrafa.5
CAT-QuickHealTrojan.Ekstak.A02
McAfeePacked-VJ!28DFCF128D64
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
K7AntiVirusTrojan ( 00533b5a1 )
K7GWTrojan ( 00533b5a1 )
CrowdStrikewin/malicious_confidence_100% (D)
ArcabitTrojan.Application.Fugrafa.5
BitDefenderThetaGen:NN.ZexaF.32248.Vv1@aqdqVxai
F-ProtW32/Trojan.CJN.gen!Eldorado
SymantecPUA.ICLoader
ESET-NOD32a variant of Win32/Kryptik.GGVR
APEXMalicious
AvastWin32:ICLoader-V [Adw]
KasperskyHEUR:Packed.Win32.Katusha.gen
BitDefenderGen:Variant.Application.Fugrafa.5
NANO-AntivirusTrojan.Win32.InstallCube.fcciwo
RisingTrojan.Kryptik!1.AA23 (CLASSIC)
Ad-AwareGen:Variant.Application.Fugrafa.5
EmsisoftApplication.FileTour (A)
ComodoApplication.Win32.ICLoader.GS@84429a
F-SecureTrojan.TR/ICLoader.Gen8
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Adware.tc
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.28dfcf128d64989f
SophosGeneric PUA AD (PUA)
SentinelOneDFI – Malicious PE
CyrenW32/Trojan.CJN.gen!Eldorado
MaxSecureTrojan.Malware.7164915.susgen
AviraTR/ICLoader.Gen8
FortinetW32/Kryptik.GJNS!tr
Endgamemalicious (high confidence)
MicrosoftSoftwareBundler:Win32/ICLoader
ZoneAlarmHEUR:Packed.Win32.Katusha.gen
AhnLab-V3PUP/Win32.ICLoader.R228516
Acronissuspicious
VBA32BScope.Adware.Agent
MAXmalware (ai score=98)
MalwarebytesAdware.LoadMoney
PandaTrj/Genetic.gen
IkarusTrojan.Win32.Crypt
eGambitUnsafe.AI_Score_99%
GDataWin32.Adware.ICLoader.D
WebrootW32.Adware.Gen
AVGWin32:ICLoader-V [Adw]
Cybereasonmalicious.28d649
Paloaltogeneric.ml
Qihoo-360Win32/Virus.6d4

How to remove Application.Fugrafa.5?

Application.Fugrafa.5 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment