Malware

Fragtor.11605 (B) malicious file

Malware Removal

The Fragtor.11605 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.11605 (B) virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (4 unique times)
  • Creates RWX memory
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Kazak
  • The binary likely contains encrypted or compressed data.
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

Related domains:

telete.in
apps.identrust.com

How to determine Fragtor.11605 (B)?


File Info:

crc32: CAE1CDCD
md5: 7a12a2bbac62c80495e22248f22191d1
name: 7A12A2BBAC62C80495E22248F22191D1.mlw
sha1: 061125ff9f8ee0886d439e80986c2c6610f17429
sha256: cb2550692006b94a61134fe87345e79e1ab6a551aa667f45ad46954fee40e1d0
sha512: e03f5ba5a062a216793fb3474482165409b3d38f44e7b70820391c8f41365826625cff1f0751aae4d8182dcfe0d0bcdcd9c83e6da2f171e8a309f11c83a575e4
ssdeep: 12288:Ffdx12zi8bAGRxA1fE0qbkoO7kbj89RTOXjEmXjP17:t12zZOfEZu9xOzj
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x120a 0x052e

Fragtor.11605 (B) also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Siggen14.64691
CynetMalicious (score: 100)
CAT-QuickHealRansom.Stop.Z5
ALYacGen:Variant.Fragtor.11605
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 005816df1 )
Cybereasonmalicious.f9f8ee
CyrenW32/Kryptik.EYC.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HMFH
APEXMalicious
AvastWin32:DropperX-gen [Drp]
KasperskyHEUR:Exploit.Win32.Shellcode.gen
BitDefenderGen:Variant.Fragtor.11605
MicroWorld-eScanGen:Variant.Fragtor.11790
Ad-AwareGen:Variant.Fragtor.11605
SophosML/PE-A
BitDefenderThetaGen:NN.ZexaF.34104.GqW@aKHUfhhG
McAfee-GW-EditionBehavesLike.Win32.Trojan.hc
FireEyeGeneric.mg.7a12a2bbac62c804
EmsisoftGen:Variant.Fragtor.11605 (B)
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Azorult.FW!MTB
ArcabitTrojan.Fragtor.D2D55
ZoneAlarmHEUR:Exploit.Win32.Shellcode.gen
GDataGen:Variant.Fragtor.11605
AhnLab-V3CoinMiner/Win.Glupteba.R438825
McAfeeGenericRXAA-AA!7A12A2BBAC62
MAXmalware (ai score=89)
MalwarebytesTrojan.MalPack.GS
TrendMicro-HouseCallTROJ_GEN.R06CH0CHP21
RisingTrojan.Kryptik!1.C6FC (CLASSIC)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.FJNW!tr
AVGWin32:DropperX-gen [Drp]
Paloaltogeneric.ml

How to remove Fragtor.11605 (B)?

Fragtor.11605 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment