Malware

Fonctuzim.1 removal tips

Malware Removal

The Fonctuzim.1 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fonctuzim.1 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Fonctuzim.1?


File Info:

crc32: E6DD3B53
md5: 8b9e45d5d11a2131b1d216192c0eb925
name: oo.exe
sha1: 82cd4018344fd1d434aea3dd3295127010961f16
sha256: 1e526380c7a79b829858e5047f3395236daee7bacabdc74ef5d2ea43d352722d
sha512: fd8cab3f7aa8dbbef3b32d1eba1a0e2217b409c0ad6c208c6c4ba77b22b64a6778c5de95659ec81b617f49ca0da800d0362f5c8a46634be9cc65c56d0d872936
ssdeep: 12288:y1a92FWw6T9fwor48zZmhXkyT6YPS2KQASL+wXCNSZ6RN1/:L2Aw6T9IorhZmhUyT6yvHo
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2014 - 2019
Assembly Version: 1.8.3.8
InternalName: CentralMemoryAgent.exe
FileVersion: 1.8.3.8
CompanyName:
LegalTrademarks:
Comments:
ProductName: CentralMemoryAgent
ProductVersion: 1.8.3.8
FileDescription: CentralMemoryAgent
OriginalFilename: CentralMemoryAgent.exe

Fonctuzim.1 also known as:

MicroWorld-eScanGen:Variant.Fonctuzim.1
FireEyeGeneric.mg.8b9e45d5d11a2131
CAT-QuickHealTrojan.MsilFC.S8706243
McAfeeGenericRXIX-BE!8B9E45D5D11A
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.1812883
SangforMalware
K7AntiVirusTrojan ( 005598721 )
BitDefenderGen:Variant.Fonctuzim.1
K7GWTrojan ( 005598721 )
CrowdStrikewin/malicious_confidence_90% (W)
TrendMicroTrojan.MSIL.WACATAC.THJAEAI
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:PWSX-gen [Trj]
GDataGen:Variant.Fonctuzim.1
KasperskyHEUR:Trojan-PSW.MSIL.Agensla.gen
AlibabaTrojanPSW:MSIL/NanoBot.ee3cc825
AegisLabTrojan.MSIL.Agensla.i!c
RisingTrojan.Kryptik!8.8 (CLOUD)
Endgamemalicious (high confidence)
EmsisoftGen:Variant.Fonctuzim.1 (B)
ComodoMalware@#29gxa9gchfhms
F-SecureTrojan.TR/Kryptik.beugc
DrWebTrojan.PWS.Siggen2.34301
VIPRETrojan.Win32.Generic!BT
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Generic.jc
Trapminesuspicious.low.ml.score
SophosMal/Kryptik-DW
SentinelOneDFI – Malicious PE
CyrenW32/MSIL_Kryptik.RJ.gen!Eldorado
JiangminTrojan.PSW.MSIL.kfk
MaxSecureTrojan.Malware.300983.susgen
AviraTR/Kryptik.beugc
WebrootW32.Trojan.Gen
MAXmalware (ai score=100)
Antiy-AVLTrojan[PSW]/MSIL.Agensla
ArcabitTrojan.Fonctuzim.1
ZoneAlarmHEUR:Trojan-PSW.MSIL.Agensla.gen
MicrosoftTrojan:MSIL/NanoBot.DH!MTB
AhnLab-V3Trojan/Win32.Agent.C3512901
Acronissuspicious
VBA32TScope.Trojan.MSIL
ALYacSpyware.AgentTesla
Ad-AwareGen:Variant.Fonctuzim.1
MalwarebytesTrojan.Crypt.MSIL
PandaTrj/CI.A
ESET-NOD32a variant of MSIL/Kryptik.TER
TrendMicro-HouseCallTrojan.MSIL.WACATAC.THJAEAI
TencentMsil.Trojan-qqpass.Qqrob.Edek
YandexTrojan.Kryptik!Q/dEPSC/ypg
IkarusTrojan-Spy.HawkEye
FortinetMSIL/Kryptik.THA!tr
BitDefenderThetaGen:NN.ZemsilF.34100.Pm0@aqqxqEj
AVGWin32:PWSX-gen [Trj]
Cybereasonmalicious.8344fd
Paloaltogeneric.ml
Qihoo-360Generic/Trojan.PSW.374

How to remove Fonctuzim.1?

Fonctuzim.1 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment