Malware

Fragtor.17671 removal tips

Malware Removal

The Fragtor.17671 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.17671 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • A process created a hidden window
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Deletes its original binary from disk
  • Creates a hidden or system file
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

Related domains:

z.whorecord.xyz
cleaner-partners.biz
a.tomx.xyz

How to determine Fragtor.17671?


File Info:

crc32: 7B86BEE0
md5: 234fad127f21b6119124e83d9612dc75
name: 234FAD127F21B6119124E83D9612DC75.mlw
sha1: 01de838b449239a5ea356c692f1f36cd0e3a27fd
sha256: 32668075f8c859636cb19de60d5ddc6e4fa1bfbc94eb6504636946d641110876
sha512: 41618ad70dc6296200471ce85be320502425730b84cb3b92f9295725746c024593811c61addc4c15c1a3d51227e50e159bc09c8d75b6029476c5b8afaacba002
ssdeep: 6144:dz8yqHNE17Drj+IzgKLhdq8SIkIcPzCoI//7Xwcb7Tz67EMExxL8:WyqHi17Drj+Iz3zmItcb6/FHn0LExxL
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Fragtor.17671 also known as:

K7AntiVirusTrojan ( 00581f861 )
LionicTrojan.Win32.Stop.j!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen15.13252
CynetMalicious (score: 100)
ALYacGen:Variant.Fragtor.17671
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/RansomX.220235cb
K7GWTrojan ( 00581f861 )
Cybereasonmalicious.b44923
CyrenW32/Kryptik.EYC.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HMJZ
APEXMalicious
AvastWin32:PWSX-gen [Trj]
ClamAVWin.Packed.Generic-9891562-0
KasperskyHEUR:Trojan-Ransom.Win32.Stop.gen
BitDefenderGen:Variant.Fragtor.17671
MicroWorld-eScanGen:Variant.Fragtor.17671
TencentWin32.Trojan-spy.Stealer.Hoot
Ad-AwareGen:Variant.Fragtor.17671
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34142.uuW@aigGkIhO
McAfee-GW-EditionBehavesLike.Win32.Lockbit.fc
FireEyeGeneric.mg.234fad127f21b611
EmsisoftGen:Variant.Fragtor.17671 (B)
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_86%
MicrosoftRansom:Win32/StopCrypt!ml
GDataWin32.Trojan.BSE.1EVKUDX
AhnLab-V3Trojan/Win.MalPE.R440807
Acronissuspicious
McAfeePacked-GDT!234FAD127F21
MAXmalware (ai score=88)
VBA32BScope.Exploit.Shellcode
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.D975 (CLASSIC)
IkarusTrojan.Win32.Glupteba
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.FKER!tr
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml

How to remove Fragtor.17671?

Fragtor.17671 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment