Malware

About “Fragtor.28224 (B)” infection

Malware Removal

The Fragtor.28224 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.28224 (B) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Deletes its original binary from disk
  • Network activity detected but not expressed in API logs
  • Uses suspicious command line tools or Windows utilities

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Fragtor.28224 (B)?


File Info:

crc32: C9929DD4
md5: 8715c26a19559a67c71d005a3340e6d2
name: 8715C26A19559A67C71D005A3340E6D2.mlw
sha1: 20c8faa54c0cc42bc64c88be68df1fd0f45843ef
sha256: 6443831f3623fbf59c3a2e6424b69b1eeb4815bfceebfa3b673203d50ca6bd1f
sha512: f6be56f71c750169fd99439bfdaec6194a8fdd358caa69650b3f53e5b93074f141c1d225a540211d04d42b7c89deef4c8bf78ba9bb3bde95d5d1199f5182164d
ssdeep: 6144:5rlYPMLKcIczacU6cx1cYG2nwXz4uM2gtN9zMuvgxbYllROhxxpeTr/ekI:Bl3PIczac7cx1cYG2yzrM26MUqsszxp
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: sajbmianozu.iya
ProductVersion: 2.4.59.42
Copyright: Copyrighz (C) 2021, fudkagat
Translation: 0x0127 0x007a

Fragtor.28224 (B) also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
Cybereasonmalicious.54c0cc
CyrenW32/Kryptik.EWJ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HMSM
APEXMalicious
AvastFileRepMalware
KasperskyUDS:Trojan.Win32.Zenpak.gen
BitDefenderGen:Variant.Fragtor.28224
MicroWorld-eScanGen:Variant.Fragtor.28224
Ad-AwareGen:Variant.Fragtor.28224
SophosML/PE-A
BitDefenderThetaGen:NN.ZexaF.34170.xq0@aiyA@Ohm
FireEyeGeneric.mg.8715c26a19559a67
EmsisoftGen:Variant.Fragtor.28224 (B)
SentinelOneStatic AI – Malicious PE
MicrosoftTrojan:Win32/Azorult.FW!MTB
GDataGen:Variant.Fragtor.28224
AhnLab-V3Ransomware/Win.StopCrypt.R443932
Acronissuspicious
MAXmalware (ai score=83)
MalwarebytesTrojan.MalPack.GS
RisingTrojan.Generic@ML.88 (RDML:6cdP75+duINvf2W3eW8Qzg)
IkarusTrojan-Banker.UrSnif
FortinetW32/Kryptik.HMSK!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Fragtor.28224 (B)?

Fragtor.28224 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment