Malware

How to remove “Fragtor.104881 (B)”?

Malware Removal

The Fragtor.104881 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.104881 (B) virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Executed a command line with /C or /R argument to terminate command shell on completion which can be used to hide execution
  • Dynamic (imported) function loading detected
  • Network anomalies occured during the analysis.
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • A ping command was executed with the -n argument possibly to delay analysis
  • Uses Windows utilities for basic functionality
  • Created a process from a suspicious location
  • Uses suspicious command line tools or Windows utilities

How to determine Fragtor.104881 (B)?


File Info:

name: D20FEB1B0DE4A2577D91.mlw
path: /opt/CAPEv2/storage/binaries/3c557d6503ab9d2924541209fba4a661b880f1fa7d0ecc6741a85f13421d5acd
crc32: CAC7F991
md5: d20feb1b0de4a2577d914c5c53dbc26c
sha1: 7dbfc5440faf8d65da3f3c24bfe8d6b577258598
sha256: 3c557d6503ab9d2924541209fba4a661b880f1fa7d0ecc6741a85f13421d5acd
sha512: 0ba8389ee4e952d08eac534177fe70ef0ad537c2de9981845ef98979a69278840d0b9bc2f7bd0ccd57f26b68bcfa01d4b6c2108215d0a7c02f7df9404e13305a
ssdeep: 384:KWIl1QZUx93609RXjXz7XjCWwqK8Wzz8WW5bIwHgvFygmGBogrLmZeEFhz+bgmIx:JIlTbZ9xjXvKBBW5bgUPPlLz+Ex
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T19BC2AF43B6428825DFFD4BF4A6F1587943BFB4202E2255634B30EA4629E2450F92E78F
sha3_384: a68f134980c0198be0a1bde5756ce2f6737f9634f528b9ddd00609f2faf253dbb938e6c3a81971de16ffae08947a7989
ep_bytes: e8b1020000e974feffff558becff7508
timestamp: 2020-12-13 23:46:04

Version Info:

0: [No Data]

Fragtor.104881 (B) also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop20.10627
MicroWorld-eScanGen:Variant.Fragtor.104881
FireEyeGeneric.mg.d20feb1b0de4a257
ALYacGen:Variant.Fragtor.104881
MalwarebytesMalware.AI.2397151589
ZillyaTrojan.SelfDel.Win32.65008
K7AntiVirusPassword-Stealer ( 005937271 )
K7GWPassword-Stealer ( 005937271 )
Cybereasonmalicious.b0de4a
CyrenW32/Agent.ENB.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/PSW.Agent.OOO
ClamAVWin.Malware.Fugrafa-9950512-0
KasperskyHEUR:Trojan.Win32.SelfDel.vho
BitDefenderGen:Variant.Fragtor.104881
NANO-AntivirusTrojan.Win32.SelfDel.jpepdv
AvastWin32:Malware-gen
TencentTrojan.Win32.Selfdel.xb
Ad-AwareGen:Variant.Fragtor.104881
TACHYONTrojan/W32.Fugrafa.26112
EmsisoftGen:Variant.Fragtor.104881 (B)
VIPREGen:Variant.Fragtor.104881
McAfee-GW-EditionBehavesLike.Win32.Generic.mh
SophosTroj/PWS-CMJ
IkarusTrojan.DelFiles
GDataGen:Variant.Fragtor.104881
JiangminTrojan.Selfdel.rft
AviraHEUR/AGEN.1234650
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.Reputation.R496203
Acronissuspicious
McAfeeGenericRXNV-VM!D20FEB1B0DE4
MAXmalware (ai score=87)
VBA32BScope.Trojan.Occamy
CylanceUnsafe
APEXMalicious
RisingStealer.Agent!1.DE3E (CLASSIC)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/SelfDef.26C0!tr
AVGWin32:Malware-gen
PandaTrj/Genetic.gen

How to remove Fragtor.104881 (B)?

Fragtor.104881 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment