Malware

Fragtor.116184 (file analysis)

Malware Removal

The Fragtor.116184 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.116184 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Fragtor.116184?


File Info:

name: 001F3EB508A05E5750AA.mlw
path: /opt/CAPEv2/storage/binaries/953e822c0613c88c3546b016b6e88c60991c833af36271da80905f605095ac60
crc32: D61A7270
md5: 001f3eb508a05e5750aa7cd0be7da031
sha1: f4f83e6872a84c9f9c74058678c60452de2e3a86
sha256: 953e822c0613c88c3546b016b6e88c60991c833af36271da80905f605095ac60
sha512: 64c74f3943344194927f6b56b754613f5c7e61827c3a147b433d827fe6671fdaf5d435db13757c08928acf6b96c61658f8bfa696efbc027d65b3407f088d6f03
ssdeep: 24576:jcN9Bo8tEwTYrYKPDtBbrM42dfQ1eHPrYGpQL+t+81KIL324l3RuQ55313Nv:jcN9+8tQnwPrYGpQat+81KIT24l3r
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T119C52B135A8B0E75DDD23BB461CB633AA734FE30CA2A9B7FB608C53559532C46C1A742
sha3_384: 0ea33d5ec480dbb77dc86476dcc8ae37302272de7032a707901d9f87818375b2177ec9a40228811242bdb9c02332db02
ep_bytes: 83ec0cc705b813520000000000e8aed1
timestamp: 2022-07-12 13:30:23

Version Info:

0: [No Data]

Fragtor.116184 also known as:

MicroWorld-eScanGen:Variant.Fragtor.116184
FireEyeGen:Variant.Fragtor.116184
CylanceUnsafe
CyrenW32/Trojan.HLPX-5019
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.HQCO
ClamAVWin.Malware.Fragtor-9934292-0
KasperskyVHO:Trojan-Spy.Win32.Convagent.gen
BitDefenderGen:Variant.Fragtor.116184
AvastWin32:CrypterX-gen [Trj]
Ad-AwareGen:Variant.Fragtor.116184
IkarusTrojan.Win32.Krypt
GDataGen:Variant.Fragtor.116184
ArcabitTrojan.Fragtor.D1C5D8
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
VBA32BScope.TrojanPSW.RedLine
MAXmalware (ai score=84)
MalwarebytesMalware.AI.2498775311
FortinetW32/RedLineStealer.B!tr
BitDefenderThetaGen:NN.ZexaF.34786.D!Z@amvqxSo
AVGWin32:CrypterX-gen [Trj]

How to remove Fragtor.116184?

Fragtor.116184 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment