Malware

Fragtor.29145 removal

Malware Removal

The Fragtor.29145 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.29145 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Deletes its original binary from disk
  • Created a process from a suspicious location

How to determine Fragtor.29145?


File Info:

name: C95E1A046FC53145F99E.mlw
path: /opt/CAPEv2/storage/binaries/671602f54c6c4018b53f2a0d2adde7d882de1e3e9c69864cc9bbdb9ad73e3e51
crc32: 75051669
md5: c95e1a046fc53145f99ecb2afc3524fa
sha1: d35c19336bfd3cd8e8f1e68ee0594bab481d4c3b
sha256: 671602f54c6c4018b53f2a0d2adde7d882de1e3e9c69864cc9bbdb9ad73e3e51
sha512: e2ff60abc571170aebe604d767642cd3d9f8a03ab317b76095226f14094d003115a19c0ccb0100aa20ad2cdfae4ee119242ed3169e0f47dd3725dbd418aab018
ssdeep: 12288:fwzQxWq6OznmKRS8PkmbCqAa84DN4Jic6V5Jm7XqxoJJwAwhGLSGZHsyOM06gbh:os4q6OzmIPkmb1zN4JYVLtNhCZMyi6c
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T156053397C3623D10EFF74EB5CA5188C70F99641E72AAAC777C91819A82FB4ACF441193
sha3_384: 1f04f01adb6b0d6d490c9a2f4062ecfe6ac0817cdba3a58de25f66f57f7e53ec3a5b4d58c100bf6393fbd8515288dc68
ep_bytes: be000000005381c00100000021c081c1
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Fragtor.29145 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
DrWebTrojan.Packed2.43250
MicroWorld-eScanGen:Variant.Fragtor.29145
FireEyeGeneric.mg.c95e1a046fc53145
McAfeeGenericRXAA-AA!C95E1A046FC5
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0058c5ff1 )
AlibabaMalware:Win32/km_280b22.None
K7GWTrojan ( 005762bf1 )
Cybereasonmalicious.36bfd3
BitDefenderThetaGen:NN.ZexaF.34182.XmW@aCmAEMk
CyrenW32/CoinMiner.CQ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Pacex.Gen
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Packed.Coinminerx-9891147-0
Kasperskynot-a-virus:HEUR:RiskTool.Win32.BitCoinMiner.vho
BitDefenderGen:Variant.Fragtor.29145
AvastWin32:CoinminerX-gen [Trj]
TencentTrojan.Win32.Coinminer.yi
SophosML/PE-A + Mal/HckPk-A
ComodoPacked.Win32.MUPX.Gen@24tbus
VIPREPacker.NSAnti.Gen (v)
TrendMicroTROJ_GEN.R002C0DJ221
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
EmsisoftGen:Variant.Fragtor.29145 (B)
SentinelOneStatic AI – Malicious PE
JiangminRiskTool.BitCoinMiner.xbz
eGambitUnsafe.AI_Score_99%
AviraHEUR/AGEN.1140994
Antiy-AVLTrojan/Generic.ASBOL.C68B
GridinsoftRansom.Win32.Miner.sa
MicrosoftTrojan:Win32/Injector.RAQ!MTB
ZoneAlarmnot-a-virus:HEUR:RiskTool.Win32.BitCoinMiner.vho
GDataGen:Variant.Fragtor.29145
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Reputation.R449913
VBA32Trojan.Packed
ALYacGen:Variant.Fragtor.29145
MAXmalware (ai score=82)
MalwarebytesTrojan.Crypt
TrendMicro-HouseCallTROJ_GEN.R002C0DJ221
RisingTrojan.Kryptik!1.D12D (CLOUD)
FortinetW32/Kryptik.EAHK!tr
AVGWin32:CoinminerX-gen [Trj]
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Fragtor.29145?

Fragtor.29145 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment