Malware

Fragtor.158609 (file analysis)

Malware Removal

The Fragtor.158609 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.158609 virus can do?

  • Unconventionial language used in binary resources: Spanish (Modern)
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Fragtor.158609?


File Info:

name: BCE8A6136B781900D270.mlw
path: /opt/CAPEv2/storage/binaries/0128ce58582dda97ba195254cc4acca126e784af93dff24d7808dcea5f3baf0c
crc32: 3161500C
md5: bce8a6136b781900d270595276bfe419
sha1: 4c989ee70b623c24025704e5852972a89f952a3d
sha256: 0128ce58582dda97ba195254cc4acca126e784af93dff24d7808dcea5f3baf0c
sha512: 18c83d5dc285a56c5b024b7f325e3058f12bd298c3fe41f72b53cc6a7b478d6fb2f13063cdd2a07955271da862b733b6b3e7ebf270541dc7eabd01ac402ae8b7
ssdeep: 3072:rIfl6HJn8FAXxezi7bXnbNppseYcpvLC8sO+TFupel9Lju:rIgHJn8FAokXBjscp+TObA
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T195741A9972C1F071D66B21B5087B820E7173FCF65C3A8207B098B2EE6C789895527F79
sha3_384: a032456ce5250f62babdeda36d7d08c4c69aceecb98e24acdd7bbc709f27aad9fe1ff7110ef31e306408b6d14076f81d
ep_bytes: 60be003049008dbe00e0f6ff5783cdff
timestamp: 2014-10-31 13:15:44

Version Info:

0: [No Data]

Fragtor.158609 also known as:

MicroWorld-eScanGen:Variant.Fragtor.158609
FireEyeGeneric.mg.bce8a6136b781900
CylanceUnsafe
SangforSuspicious.Win32.Save.a
Cybereasonmalicious.70b623
BitDefenderThetaGen:NN.ZexaCO.34796.vmW@auzsaaRi
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
ClamAVWin.Malware.Softpulse-9956810-0
BitDefenderGen:Variant.Fragtor.158609
CynetMalicious (score: 100)
APEXMalicious
Ad-AwareGen:Variant.Fragtor.158609
VIPREGen:Variant.Fragtor.158609
EmsisoftGen:Variant.Fragtor.158609 (B)
IkarusPUA.DigitalPlugin
GDataGen:Variant.Fragtor.158609
AviraHEUR/AGEN.1234318
MAXmalware (ai score=82)
Antiy-AVLTrojan/Win32.Wacatac
ArcabitTrojan.Fragtor.D26B91
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GoogleDetected
AhnLab-V3PUP/Win.SoftPulse.R525220
Acronissuspicious
ALYacGen:Variant.Fragtor.158609
MalwarebytesPUP.Optional.SoftPulse
AvastWin32:Malware-gen
SentinelOneStatic AI – Suspicious PE
FortinetW32/ULPM.16C0!tr
AVGWin32:Malware-gen

How to remove Fragtor.158609?

Fragtor.158609 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment