Malware

Should I remove “Fragtor.326113”?

Malware Removal

The Fragtor.326113 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.326113 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Fragtor.326113?


File Info:

name: FE17EF3636D19A25413B.mlw
path: /opt/CAPEv2/storage/binaries/22123d0eb8f0c757872d33a858c59285f884763a85ba0733ee92c1f7a82e9244
crc32: 8E41511E
md5: fe17ef3636d19a25413b8f0cd16b0ae9
sha1: 5d4b3d0a1136b1b1f8c98a17e442ec4c44769b96
sha256: 22123d0eb8f0c757872d33a858c59285f884763a85ba0733ee92c1f7a82e9244
sha512: 4b315468bdc6d9b9e78535948601243665a16f6cc966b81fe67d97589c059420f60d9649474af09f197c7aba4e8e852ad59f37ba039a869c7459da1dfd425541
ssdeep: 98304:wwgApbl/MlBNCOhBfSQHchB0B0FbnOFvAesuHwD9YgCOhBfSQHchB0B0FbnOFv:RZ/ahI0chB0mzuQCchI0chB0m
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E356BF22DB82C470E111097091B2177D677AEFAA1C259793C690FDBD7E33392AF9224D
sha3_384: 96352e83d58e1626122a67cf2c6090ed8e1deab24894d75fdfe6e5e2e4befa0a99be57d662e8c5b58b3c96042bd275c0
ep_bytes: 558bec6aff68f80b8c006840365a0064
timestamp: 2021-08-10 16:03:29

Version Info:

FileVersion: 1.0.0.0
FileDescription: 易语言程序
ProductName: 易语言程序
ProductVersion: 1.0.0.0
LegalCopyright: 作者版权所有 请尊重并使用正版
Comments: 本程序使用易语言编写(http://www.eyuyan.com)
Translation: 0x0804 0x04b0

Fragtor.326113 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Fragtor.326113
ClamAVWin.Malware.Trojanx-9951053-0
FireEyeGeneric.mg.fe17ef3636d19a25
McAfeeArtemis!FE17EF3636D1
Cylanceunsafe
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 005246d51 )
K7GWTrojan ( 005246d51 )
Cybereasonmalicious.a1136b
BitDefenderThetaGen:NN.ZexaF.36318.@J0@a8S3J2oH
CyrenW32/Trojan.GRW.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Diple.gen
BitDefenderGen:Variant.Fragtor.326113
AvastWin32:Malware-gen
SophosTroj/Patched-BS
F-SecureMalware.W32/Etap
McAfee-GW-EditionBehavesLike.Win32.Trojan.vh
Trapminemalicious.moderate.ml.score
EmsisoftApplication.Generic (A)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.161DS2T
AviraW32/Etap
Antiy-AVLTrojan/Win32.FlyStudio.a
XcitiumTrojWare.Win32.Bitrep.IW@7mfe0x
ZoneAlarmHEUR:Trojan.Win32.Diple.gen
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
Acronissuspicious
MAXmalware (ai score=86)
MalwarebytesPUP.Optional.ChinAd
RisingTrojan.Generic@AI.92 (RDML:MuVtnegmZw+kt7v+zCo2Kw)
IkarusTrojan-PWS.Win32.Bjlog
FortinetW32/Patched.IW!tr
AVGWin32:Malware-gen
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_70% (D)

How to remove Fragtor.326113?

Fragtor.326113 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment