Malware

About “Fragtor.13521” infection

Malware Removal

The Fragtor.13521 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.13521 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Deletes executed files from disk

How to determine Fragtor.13521?


File Info:

name: 787083C2AAB19F3869B2.mlw
path: /opt/CAPEv2/storage/binaries/14326f3dc3f5bf3089ded96d269e0c9dd6c31697716c9c1c6b07934be626cec8
crc32: 1C702A4F
md5: 787083c2aab19f3869b27d045d28f6c7
sha1: df8265b191597257fd45e0eb848ce7f4a4aac78d
sha256: 14326f3dc3f5bf3089ded96d269e0c9dd6c31697716c9c1c6b07934be626cec8
sha512: 8c8378c394de5fc9864a1f1fb819464af610fa9c177e958277c2d0ab879f06ba1090d794eae0f27b168c886cb1c229322b6d4466fa6453a1a21da7d1ef99b9b5
ssdeep: 3072:0tLQM+OrnxMMO41rGoDBbd4M5baUM/pRY6lY+lBbd4M5vu8GISBWacdBg9NBbd4I:qG72rGoZQXEQgQSAroDQXEQQ
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1C0841240B3911FA8E9B437F302A36FC93605E0F472899703DA248EF89719599B8D9F17
sha3_384: aac492b195773c7eee38c098c308f322141dc13411bb2b806fbcb2adf020e21c8f84d097be55b5c1fcfe1bd663c604e2
ep_bytes: bb0000000083ec04893c2442594083ec
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Fragtor.13521 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Fragtor.13521
FireEyeGeneric.mg.787083c2aab19f38
ALYacGen:Variant.Fragtor.13521
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0058c5ff1 )
BitDefenderGen:Variant.Fragtor.13521
K7GWTrojan ( 0058c5ff1 )
Cybereasonmalicious.191597
CyrenW32/Kryptik.DCC.gen!Eldorado
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Kryptik.HITO
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Packed.Copak-9853643-0
KasperskyVHO:Trojan.Win32.Copak.gen
NANO-AntivirusTrojan.Win32.Agent.ixszcw
RisingTrojan.Kryptik!1.D12D (CLASSIC)
Ad-AwareGen:Variant.Fragtor.13521
EmsisoftGen:Variant.Fragtor.13521 (B)
ComodoPacked.Win32.MUPX.Gen@24tbus
DrWebTrojan.Packed2.43250
VIPREGen:Variant.Fragtor.13521
TrendMicroPAK_Xed-10
McAfee-GW-EditionBehavesLike.Win32.Glupteba.fc
SophosML/PE-A + Troj/Agent-BGZJ
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Copak.civ
AviraTR/Patched.Ren.Gen
Antiy-AVLTrojan/Generic.ASBOL.C686
MicrosoftTrojan:Win32/Injector.RAQ!MTB
GDataGen:Variant.Fragtor.13521
GoogleDetected
AhnLab-V3Malware/Win32.Generic.R369371
Acronissuspicious
McAfeeGenericRXAA-FA!787083C2AAB1
MAXmalware (ai score=86)
VBA32BScope.Trojan.Wacatac
MalwarebytesSpyware.PasswordStealer
PandaTrj/Genetic.gen
TrendMicro-HouseCallPAK_Xed-10
TencentTrojan.Win32.Copak.hb
IkarusTrojan.Kryptik
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Kryptik.HITO!tr
BitDefenderThetaGen:NN.ZexaF.34606.xmZ@aqxLbnk
AVGWin32:Evo-gen [Susp]
AvastWin32:Evo-gen [Susp]
CrowdStrikewin/malicious_confidence_60% (D)

How to remove Fragtor.13521?

Fragtor.13521 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment