Malware

Fragtor.31344 malicious file

Malware Removal

The Fragtor.31344 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.31344 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Deletes its original binary from disk
  • Created a process from a suspicious location
  • Creates a copy of itself

How to determine Fragtor.31344?


File Info:

name: 9516737FC27FD6B4ADF2.mlw
path: /opt/CAPEv2/storage/binaries/2ccba9b95f3641c41d1e624b0a899b3b123737a77fed4bb8c085965ff2e4f2b2
crc32: C92BDABC
md5: 9516737fc27fd6b4adf2bf8086df0b3f
sha1: 28fd758bc35da2e592e746b8571978097164915d
sha256: 2ccba9b95f3641c41d1e624b0a899b3b123737a77fed4bb8c085965ff2e4f2b2
sha512: b00a159f53002bb7fc6a44fd711d37009630e8aff9de64b670f33587c81e2fa0ddcf6ca25dbba83107ab33f2106db72d0f926a07b2a9c9d2842b176e7c961472
ssdeep: 12288:cQCm00Z+PvLjPL7DkhR8MaQTLfaPn2R5+6Kca9POnbT4T4ESeMr1dQr2B/yZw:cQQq+nLTLMbhTLyfhca9azGS1dl/y
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1F105237EC2AA7A55F25E777C1D13DFA648F68288A85E9AB60C74FCA03D3107D8305907
sha3_384: c15c9c9762254d2ec5a9308c1c5b77823635b97d638456bef8b309b7bda308863e935496afb61ee5879a80b460b9e1cc
ep_bytes: b90000000083ec04893c2481eb114563
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Fragtor.31344 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Copak.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Fragtor.31344
FireEyeGeneric.mg.9516737fc27fd6b4
McAfeeGenericRXAA-FA!9516737FC27F
CylanceUnsafe
VIPREPacker.NSAnti.Gen (v)
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0057ffc71 )
AlibabaMalware:Win32/km_280b22.None
K7GWTrojan ( 005762bf1 )
Cybereasonmalicious.bc35da
BitDefenderThetaGen:NN.ZexaF.34182.XmW@amYHFOl
CyrenW32/CoinMiner.CQ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Pacex.Gen
APEXMalicious
Paloaltogeneric.ml
KasperskyUDS:Trojan.Win32.Copak
BitDefenderGen:Variant.Fragtor.31344
AvastWin32:CoinminerX-gen [Trj]
TencentTrojan.Win32.Coinminer.yi
SophosML/PE-A + Mal/HckPk-A
ComodoPacked.Win32.MUPX.Gen@24tbus
DrWebTrojan.Packed2.43250
ZillyaTrojan.Copak.Win32.151313
TrendMicroTROJ_GEN.R002C0DJ221
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
EmsisoftGen:Variant.Fragtor.31344 (B)
IkarusTrojan.Win32.Injector
AviraTR/Crypt.ULPM.Gen
MAXmalware (ai score=87)
Antiy-AVLTrojan/Generic.ASBOL.C68E
GridinsoftRansom.Win32.Miner.sa
MicrosoftTrojan:Win32/Injector.RAQ!MTB
GDataGen:Variant.Fragtor.31344
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.R369474
ALYacGen:Variant.Fragtor.31344
VBA32Trojan.Packed
MalwarebytesTrojan.Crypt
TrendMicro-HouseCallTROJ_GEN.R002C0DJ221
RisingTrojan.Injector!1.C865 (CLOUD)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.EAHK!tr
AVGWin32:CoinminerX-gen [Trj]
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Fragtor.31344?

Fragtor.31344 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment