Malware

Fragtor.18582 removal

Malware Removal

The Fragtor.18582 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.18582 virus can do?

  • Executable code extraction
  • Compression (or decompression)
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Unconventionial language used in binary resources: Spanish (Nicaragua)
  • The binary likely contains encrypted or compressed data.
  • Creates a hidden or system file
  • Anomalous binary characteristics

How to determine Fragtor.18582?


File Info:

crc32: 3ECA0C1A
md5: 643203bc80de891208614cc77925373f
name: 643203BC80DE891208614CC77925373F.mlw
sha1: 0df0efd8a4d0cabcc8242d708e72cd11ec70b19b
sha256: 49f3d49a89443de2c5c954803aff0e8891c6a87c069c784dd67e373204590cd5
sha512: c6666663e6831995f693b8561f128a1b791d01c92e6f3f31c298ec56806c01f8d6056046dadd33537574f868b3ded3011427d00ad4679eb27228236b70560e87
ssdeep: 24576:HXTxHjyhGvhudC7IinQZi+n99VAD41ZxB3IsfVH3KcSVn:jQGhuPkQZx93F/rXS
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: sojbmoumunu.ahe
ProductVersion: 8.19.590.38
Copyright: Copyrighz (C) 2021, fudkagata
Translation: 0x0129 0x0167

Fragtor.18582 also known as:

LionicWorm.Win32.LovGate.t!c
Elasticmalicious (high confidence)
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
K7GWTrojan ( 0056f9be1 )
K7AntiVirusTrojan ( 0056f9be1 )
CyrenW32/Kryptik.EWJ.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/Kryptik.HMKQ
APEXMalicious
AvastWin32:CrypterX-gen [Trj]
CynetMalicious (score: 100)
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Fragtor.18582
MicroWorld-eScanGen:Variant.Fragtor.18582
Ad-AwareGen:Variant.Fragtor.18582
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34142.cr0@aOYhQQV
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeGeneric.mg.643203bc80de8912
EmsisoftTrojan.Agent (A)
SentinelOneStatic AI – Malicious PE
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Caynamer.A!ml
GridinsoftTrojan.Win32.Packed.lu!heur
GDataWin32.Packed.Kryptik.FT3XHG
McAfeeArtemis!643203BC80DE
MAXmalware (ai score=85)
MalwarebytesTrojan.MalPack.GS
RisingTrojan.Kryptik!1.D977 (CLASSIC)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.HMKO!tr
AVGWin32:CrypterX-gen [Trj]
Paloaltogeneric.ml

How to remove Fragtor.18582?

Fragtor.18582 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment