Malware

Fragtor.104777 (file analysis)

Malware Removal

The Fragtor.104777 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.104777 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Executed a command line with /C or /R argument to terminate command shell on completion which can be used to hide execution
  • Dynamic (imported) function loading detected
  • Network anomalies occured during the analysis.
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • A ping command was executed with the -n argument possibly to delay analysis
  • Uses Windows utilities for basic functionality
  • Created a process from a suspicious location
  • Uses suspicious command line tools or Windows utilities

How to determine Fragtor.104777?


File Info:

name: F761BFECBE3F78B49D83.mlw
path: /opt/CAPEv2/storage/binaries/1fd330884aa95e56c6d7b592159ccdda51815b8edeeb2ec593b6e5d6be8e6b46
crc32: 4254AF3A
md5: f761bfecbe3f78b49d8327a3d99db366
sha1: cea9a4cbc2658f7f46bcd909b008cb8bc792729c
sha256: 1fd330884aa95e56c6d7b592159ccdda51815b8edeeb2ec593b6e5d6be8e6b46
sha512: 0b8f21d695d2b715a1d23e4289afbba1c835fbc6718c7a469b7591a9ea9b212806fa9358478ce3f20d8254dafb6db3283ede07771842fa1774b86dc27ef695de
ssdeep: 384:BWzZ67XcRUx9AcB09RXjXz7XjCWwqK8Wzz8WW5bIwHhJIKxYQ3VCqGD08YvB:AzZ67XlbNO9xjXvKBBW5bhooVbxB
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T18CC29EC7FBE08470EF96C678607358B883BFB46529F5494297E0F41A05F6464F64B2CA
sha3_384: bb17da52f26ca90885213004e175987d4415e588df892aa8aa824f32a9b0340c20c868dfa9f8cad9b01607b9b9029136
ep_bytes: e8b1020000e974feffff558becff7508
timestamp: 2020-12-13 23:46:04

Version Info:

0: [No Data]

Fragtor.104777 also known as:

BkavW32.AIDetect.malware2
MicroWorld-eScanGen:Variant.Fragtor.104777
FireEyeGeneric.mg.f761bfecbe3f78b4
ALYacGen:Variant.Fragtor.104777
MalwarebytesMalware.AI.2397151589
VIPREGen:Variant.Fragtor.104777
K7AntiVirusPassword-Stealer ( 005937271 )
BitDefenderGen:Variant.Fragtor.104777
K7GWPassword-Stealer ( 005937271 )
CyrenW32/Agent.ENB.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/PSW.Agent.OOO
ClamAVWin.Malware.Fugrafa-9950512-0
KasperskyHEUR:Trojan.Win32.SelfDel.vho
NANO-AntivirusTrojan.Win32.SelfDel.jpepdv
RisingStealer.Agent!1.DE3E (CLASSIC)
Ad-AwareGen:Variant.Fragtor.104777
TACHYONTrojan/W32.Fugrafa.26112
EmsisoftGen:Variant.Fragtor.104777 (B)
DrWebTrojan.MulDrop20.10627
ZillyaTrojan.SelfDel.Win32.65008
McAfee-GW-EditionGenericRXNV-VM!F761BFECBE3F
SentinelOneStatic AI – Suspicious PE
SophosTroj/PWS-CMJ
APEXMalicious
JiangminTrojan.Selfdel.rft
AviraHEUR/AGEN.1234650
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Fragtor.104777
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.Reputation.R496203
Acronissuspicious
McAfeeGenericRXNV-VM!F761BFECBE3F
MAXmalware (ai score=87)
VBA32BScope.Trojan.Occamy
CylanceUnsafe
PandaTrj/Genetic.gen
TencentTrojan.Win32.Selfdel.xb
IkarusTrojan.DelFiles
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/SelfDef.26C0!tr
AVGWin32:Malware-gen
Cybereasonmalicious.cbe3f7
AvastWin32:Malware-gen

How to remove Fragtor.104777?

Fragtor.104777 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment