Malware

Fragtor.146157 information

Malware Removal

The Fragtor.146157 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.146157 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is likely packed with VMProtect
  • Authenticode signature is invalid

How to determine Fragtor.146157?


File Info:

name: 066A847FBE067D579287.mlw
path: /opt/CAPEv2/storage/binaries/14caa5a9e8891febf791c3771abcc4fe1721adae0d8739a90849d2b9d597a270
crc32: DC103E49
md5: 066a847fbe067d5792879766ff45625a
sha1: 39d1e30aef90e73191947427ad6fd13581d50b21
sha256: 14caa5a9e8891febf791c3771abcc4fe1721adae0d8739a90849d2b9d597a270
sha512: 9d93c4150c7f019b0f65e0a847d698b7bf7c74df80d04f2ef07a895b95f322598c5c5f3e8019dae03ec84209270282c7c76eb81ad932e137bf253ab679f424ea
ssdeep: 393216:q5J3IemiltFdHx+6mJ6cv8+hJqEfKLjBmrFjBXEAr6KqFtIU:WaSDHxnywEfKLArr0AmK
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T196F6333352741082F5E5C93C662B7EE536F7132ECB43A8F962A65CC96C12CE4A707963
sha3_384: cb1023acf15c80d903ee63b79171d081192f6c138f27d413aa98fd7abe50c72579f0cb4003d569f1dfac1b2832143c46
ep_bytes: 68cf484d8de823fc90ff56c3ffe70fc8
timestamp: 2022-08-17 03:15:06

Version Info:

0: [No Data]

Fragtor.146157 also known as:

BkavW32.AIDetect.malware2
LionicHeuristic.File.Generic.00×1!p
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Fragtor.146157
FireEyeGeneric.mg.066a847fbe067d57
McAfeeArtemis!066A847FBE06
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusAdware ( 004b8e1b1 )
K7GWAdware ( 004b8e1b1 )
CrowdStrikewin/malicious_confidence_60% (W)
CyrenW32/FlyStudio.W.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/FlyStudio.Packed.AO potentially unwanted
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyTrojan-Banker.Win32.Agent.auhd
BitDefenderGen:Variant.Fragtor.146157
AvastWin32:BankerX-gen [Trj]
Ad-AwareGen:Variant.Fragtor.146157
EmsisoftGen:Variant.Fragtor.146157 (B)
ComodoTrojWare.Win32.Agent.ISVQ@5mbonp
McAfee-GW-EditionBehavesLike.Win32.Generic.wc
Trapminemalicious.moderate.ml.score
SophosGeneric PUA DJ (PUA)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Fragtor.146157
Antiy-AVLTrojan/Generic.ASMalwS.5129
ArcabitTrojan.Fragtor.D23AED
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34682.@BW@a8zNDXfb
MAXmalware (ai score=86)
MalwarebytesMalware.Heuristic.1003
TrendMicro-HouseCallTROJ_GEN.R002H07IM22
RisingTrojan.Generic@AI.100 (RDML:nA3lIQ1UD5wf8QOxOrOt1A)
IkarusTrojan.Win32.Krypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.DLII!tr
AVGWin32:BankerX-gen [Trj]

How to remove Fragtor.146157?

Fragtor.146157 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment