Malware

Fragtor.303042 (file analysis)

Malware Removal

The Fragtor.303042 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.303042 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Fragtor.303042?


File Info:

name: 05B8BEFB2F94E177325C.mlw
path: /opt/CAPEv2/storage/binaries/54c2abb72b2d76316f852174dd3268690f82a4826086200876bdc5674466e536
crc32: FC8B610C
md5: 05b8befb2f94e177325cb2aa813275c5
sha1: 284e39da2fd8dfc2fb328032c37ec8c83cdd5f4c
sha256: 54c2abb72b2d76316f852174dd3268690f82a4826086200876bdc5674466e536
sha512: 715d39cf12c48b42217851ed673032b5767bc539900e12df60a7bcc32458c6c8beb76f0ce975915e47aadcc04cf98951f272f12d6dfba90bf3f7ae5218ac0b03
ssdeep: 192:dp+BVgpifk6Cy9QAsMHgGk9ijFD/hipo4llNMlKTUstfpxIkk/l1pG1NpnED3Y79:dc5k6V94MAHAx0dj8cN7xAP57JTaK4
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T131133102130F52D7D49633F466868323E6307C926B2DA37395EAE0671FCA25D96B7AD0
sha3_384: 30f61b398ff50be9d0f22512e67a274ecc89ff5e817a51d7006c042c3ce04413a9ba3f3e74fb8916df322b609bbd617e
ep_bytes: 60be00a041008dbe0070feff57eb0b90
timestamp: 2019-04-04 18:37:52

Version Info:

0: [No Data]

Fragtor.303042 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.GenericML.4!c
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Fragtor.303042
ClamAVWin.Trojan.Remcos-9763891-0
FireEyeGeneric.mg.05b8befb2f94e177
ALYacGen:Variant.Fragtor.303042
Cylanceunsafe
SangforTrojan.Win32.Save.a
AlibabaTrojan:Win32/Generic.8bccbb77
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZexaF.36318.cmW@amm3Lbei
CyrenW32/Farfli.JA.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
APEXMalicious
CynetMalicious (score: 100)
KasperskyUDS:Trojan.Win32.GenericML.xnet
BitDefenderGen:Variant.Fragtor.303042
SUPERAntiSpywareBackdoor.Remcos/Variant
AvastWin32:TrojanX-gen [Trj]
SophosMal/Generic-S
F-SecureTrojan.TR/Crypt.ULPM.Gen
VIPREGen:Variant.Fragtor.303042
TrendMicroTROJ_GEN.R002C0WGK23
McAfee-GW-EditionBehavesLike.Win32.RealProtect.pz
EmsisoftGen:Variant.Fragtor.303042 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Fragtor.303042
JiangminTrojan.GenericML.ape
AviraTR/Crypt.ULPM.Gen
XcitiumPacked.Win32.MUPX.Gen@24tbus
ArcabitTrojan.Fragtor.D49FC2
ViRobotTrojan.Win.Z.Fragtor.43008.CD
ZoneAlarmUDS:Trojan.Win32.GenericML.xnet
MicrosoftTrojan:Script/Phonzy.B!ml
GoogleDetected
AhnLab-V3Backdoor/Win32.Farfli.C1526307
McAfeeGenericRXAA-FA!05B8BEFB2F94
MAXmalware (ai score=85)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0WGK23
IkarusTrojan.Crypt
MaxSecureTrojan.Malware.74538720.susgen
FortinetW32/ULPM.16C0!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Fragtor.303042?

Fragtor.303042 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment