Malware

What is “Fragtor.30682”?

Malware Removal

The Fragtor.30682 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.30682 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Deletes its original binary from disk
  • Creates a copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Fragtor.30682?


File Info:

crc32: C3A20639
md5: 5b46b5aac912daac8a60e6cd06b9149d
name: 5B46B5AAC912DAAC8A60E6CD06B9149D.mlw
sha1: 1480a597609396d5597feb43b04ba15753c21c5e
sha256: 8c0da98db429effbc782b08c16eaeef7f7d1b373d63424cedd2deff5682eb3de
sha512: d6f34ad13b30f1e2b3ea1fe4342db5c51b6d88ce889084f6cb1a6aba4810a047472c0fd955d74e83a277cde22388f028bf1f83e989d4cea7a71bae05837762a2
ssdeep: 24576:Q7r97P+Bc3G9OyQXyvKQkb2y9bVHRNq+0ms1qt:Q7ZzP3A4yvmX9VqxB1q
type: PE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows, UPX compressed

Version Info:

0: [No Data]

Fragtor.30682 also known as:

K7AntiVirusTrojan ( 0057ffc71 )
Elasticmalicious (high confidence)
DrWebTrojan.Packed2.43250
CynetMalicious (score: 100)
ALYacGen:Variant.Fragtor.30682
CylanceUnsafe
K7GWTrojan ( 005762bf1 )
Cybereasonmalicious.760939
CyrenW32/CoinMiner.CQ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HITO
APEXMalicious
AvastWin32:CoinminerX-gen [Trj]
Kasperskynot-a-virus:HEUR:RiskTool.Win32.BitCoinMiner.vho
BitDefenderGen:Variant.Fragtor.30682
MicroWorld-eScanGen:Variant.Fragtor.30682
TencentTrojan.Win32.Coinminer.yi
Ad-AwareGen:Variant.Fragtor.30682
SophosMal/HckPk-A
ComodoPacked.Win32.MUPX.Gen@24tbus
BitDefenderThetaGen:NN.ZexaF.34266.XmW@aClOlHm
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
FireEyeGen:Variant.Fragtor.30682
EmsisoftGen:Variant.Fragtor.30682 (B)
SentinelOneStatic AI – Malicious PE
JiangminRiskTool.BitCoinMiner.alxf
AviraTR/Crypt.ULPM.Gen
Antiy-AVLTrojan/Generic.ASBOL.C68A
MicrosoftTrojan:Win32/Injector.RAQ!MTB
GDataGen:Variant.Fragtor.30682
AhnLab-V3Malware/Win32.Generic.R369407
McAfeeGenericRXAA-AA!5B46B5AAC912
MAXmalware (ai score=86)
VBA32Trojan.Packed
MalwarebytesTrojan.Crypt.UPX
PandaTrj/Genetic.gen
RisingTrojan.Injector!1.C865 (CLASSIC)
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.EAHK!tr
AVGWin32:CoinminerX-gen [Trj]

How to remove Fragtor.30682?

Fragtor.30682 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment