Malware

What is “Fragtor.106316”?

Malware Removal

The Fragtor.106316 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.106316 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • CAPE detected the RedLine malware family
  • Anomalous binary characteristics

How to determine Fragtor.106316?


File Info:

name: E13241899982986D331B.mlw
path: /opt/CAPEv2/storage/binaries/34e568007a16e6ea31ce841602681c9b8fab08879643815ef288139ee630db0e
crc32: 96CCB141
md5: e13241899982986d331b5b1ce27d73d0
sha1: 8946f39ed95e117f4324bb9e4218821d091ac409
sha256: 34e568007a16e6ea31ce841602681c9b8fab08879643815ef288139ee630db0e
sha512: 63aa7744ec4aa1314e47008d60cb9556dcaa386ce154ac28a69291bf54f7e37660c9cb525a453e9d74f0bb606c98355b091f1fa519cf87a087c57ef6a2e610dc
ssdeep: 24576:wUAJvQZP2i59xCbc18FF2kXcXrh9OtExXuQ5p3h3Ba:fuoPOv2HXNAF
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T112B509135A8B0E75DDC23BB461CB633A9734EE30CA2A9B7FF709C53599532C4681A742
sha3_384: 9100515701378a1f2b81f3461bbf4be5c24cd98d33fcc31d2590bc11bc2520dd0f573fdc80044a330ca59cc38cdc0a2e
ep_bytes: 83ec1cc7042401000000ff15e4225100
timestamp: 2022-06-24 05:35:25

Version Info:

0: [No Data]

Fragtor.106316 also known as:

CynetMalicious (score: 100)
FireEyeGen:Variant.Fragtor.106316
McAfeeGenericRXTJ-UH!E13241899982
MalwarebytesMalware.AI.2940859040
BitDefenderGen:Variant.Fragtor.106316
ESET-NOD32a variant of Win32/Kryptik.HPTA
ClamAVWin.Malware.Jaik-9952806-0
KasperskyHEUR:Trojan-Spy.Win32.Stealer.gen
MicroWorld-eScanGen:Variant.Fragtor.106316
RisingStealer.Agent!8.C2 (TFE:dGZlOgWMsr5Bj731xQ)
IkarusTrojan.Win32.Crypt
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ZoneAlarmHEUR:Trojan-Spy.Win32.Stealer.gen
GDataTrojan.GenericKDZ.89196
MAXmalware (ai score=87)
CylanceUnsafe
SentinelOneStatic AI – Suspicious PE
BitDefenderThetaGen:NN.ZexaF.34742.o!Z@aeQ4o0k

How to remove Fragtor.106316?

Fragtor.106316 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment