Malware

Fragtor.15688 information

Malware Removal

The Fragtor.15688 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.15688 virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is likely packed with VMProtect
  • Authenticode signature is invalid

How to determine Fragtor.15688?


File Info:

name: 83592A8161FEBC761E1F.mlw
path: /opt/CAPEv2/storage/binaries/ad3e8549d3a19c39f125aefa70bcc5e2e4c3e6af901b99168aff79ab4c44e166
crc32: 850181C4
md5: 83592a8161febc761e1f9831f2668165
sha1: e260cc7224f426794c486ff70e123c24f2e04b95
sha256: ad3e8549d3a19c39f125aefa70bcc5e2e4c3e6af901b99168aff79ab4c44e166
sha512: 2b659f207d492b21c04f5fed3dc5ff803d3ef32543cf85630424f8019ffb3a6bb85c38a8849d6671e2175a2f9aa4f8d02cb8f5fab3a1548d491cbac7e429b795
ssdeep: 196608:Ex8F4YixubjxVvMmFmevKL+knGKp3SrnNlk3tw/+sAiOeAj0CGy6LRzTebakeUtb:wIdixubbJwGOCrnNl0O/5AiHAJGy6YbN
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11AC6332313751449E3E5C938C5337EADB1F287B5CA81C875AAEA7BC01921CE5E2435BB
sha3_384: e264f39155cbe180e4f53721d8bb14fd935639a7cf163cb472ac4e705bdca67d33e50b4708246b2231726dbdead0bae2
ep_bytes: 68ddbcfed0e8d907a9ffdd442500660f
timestamp: 2022-05-02 14:26:23

Version Info:

0: [No Data]

Fragtor.15688 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Fragtor.15688
ALYacGen:Variant.Fragtor.15688
CylanceUnsafe
K7AntiVirusTrojan ( 0056e6f61 )
K7GWTrojan ( 0056e6f61 )
ArcabitTrojan.Fragtor.D3D48
CyrenW32/FlyStudio.W.gen!Eldorado
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/FlyStudio.Packed.AO potentially unwanted
APEXMalicious
BitDefenderGen:Variant.Fragtor.15688
Ad-AwareGen:Variant.Fragtor.15688
SophosGeneric ML PUA (PUA)
ComodoTrojWare.Win32.Agent.ISVQ@5mbonp
McAfee-GW-EditionBehavesLike.Win32.Generic.wc
FireEyeGeneric.mg.83592a8161febc76
EmsisoftGen:Variant.Fragtor.15688 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1200356
MAXmalware (ai score=88)
MicrosoftTrojan:Win32/Sabsik.EN.B!ml
GDataGen:Variant.Fragtor.15688
CynetMalicious (score: 100)
RisingTrojan.Generic@AI.100 (RDMK:cmRtazphfOaN/iC30/kS9JdaEI/l)
IkarusTrojan.Win32.Krypt
MaxSecureTrojan.Malware.300983.susgen
BitDefenderThetaGen:NN.ZexaF.34638.@BW@aqdiARkb
Cybereasonmalicious.224f42

How to remove Fragtor.15688?

Fragtor.15688 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment