Malware

Fragtor.327453 removal tips

Malware Removal

The Fragtor.327453 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.327453 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Fragtor.327453?


File Info:

name: EBC66DB4DD04CA972DE9.mlw
path: /opt/CAPEv2/storage/binaries/7bd2c97ac5027c360011dc5aa8f2371cd934f73e885e41f7e80152332b3af1db
crc32: A1235704
md5: ebc66db4dd04ca972de9d4a3a59552d2
sha1: ef6f5acfe78a50fd5fa61a9f8c3b04e78733d9a3
sha256: 7bd2c97ac5027c360011dc5aa8f2371cd934f73e885e41f7e80152332b3af1db
sha512: 4fa37008591a811718b0a34569a9aff4c45939b3a9da9407f9484061681657d68d554485d5400a2e9aed3075359cdd027b6ffe5d62ba3865a50b167bb0fdebae
ssdeep: 192:zfxSa/xpUxSF6N1T6oZqWqccMRWxkLTJ+g0cVp2u8H6E6agHba:dSHiC1xUWqccMVLTJaw8HPQO
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T17A8229A5AF4700FBD61309B843E7DA7FDA783901D0218D28F758823EA9334B5CA5B711
sha3_384: 79936e3925730ddb23e4c6046f6f7c8d0c2294a4b3c81aee0493565f829e04c1f8c905e03d4f8291f46381c38b638fc9
ep_bytes: 83ec2c895c24208b5c2434897424248b
timestamp: 1970-01-01 00:00:00

Version Info:

Translation: 0x0409 0x04b0
CompanyName: Wincor Nixdorf
FileDescription: CNG Device Driver
FileVersion: 111021 1426
InternalName: CSCWCNG.DLL
LegalCopyright: Copyright © Wincor Nixdorf 2019
OriginalFilename: CSCWCNG.DLL
ProductName:
ProductVersion:

Fragtor.327453 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.ATMDispCash.7!c
Elasticmalicious (high confidence)
SkyhighRDN/PWS-Banker
McAfeeRDN/PWS-Banker
VIPREGen:Variant.Fragtor.327453
SangforBanker.Win32.Atm.Vrsc
K7AntiVirusTrojan ( 0054b3ec1 )
BitDefenderGen:Variant.Fragtor.327453
K7GWTrojan ( 0054b3ec1 )
CrowdStrikewin/malicious_confidence_100% (W)
VirITTrojan.Win32.ATMDispCash.Q
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/ATM.P
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Banker.Win32.ATM.gen
AlibabaTrojanBanker:Win32/ATMPOT.30679055
NANO-AntivirusTrojan.Win32.ATMDispCash.fphnwy
MicroWorld-eScanGen:Variant.Fragtor.327453
AvastWin32:Malware-gen
RisingTrojan.ATM!8.4A48 (CLOUD)
EmsisoftGen:Variant.Fragtor.327453 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.ATMDispCash.16
ZillyaTrojan.Agentb.Win32.22580
TrendMicroTrojan.Win32.ATMPOT.A
FireEyeGeneric.mg.ebc66db4dd04ca97
SophosMal/Generic-S
IkarusTrojan.Crypt
GDataGen:Variant.Fragtor.327453
JiangminTrojan.Banker.ATM.a
GoogleDetected
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=94)
Antiy-AVLTrojan/Win32.ATM
KingsoftWin32.Trojan-Banker.ATM.gen
XcitiumMalware@#37xdzypncj0kv
ArcabitTrojan.Fragtor.D4FF1D
ZoneAlarmHEUR:Trojan-Banker.Win32.ATM.gen
MicrosoftTrojan:Win32/Wacatac.B!ml
VaristW32/ABTrojan.FWUZ-6142
AhnLab-V3Trojan/Win32.Banker.C4102005
VBA32BScope.Trojan.ATMDispCash
ALYacTrojan.ATMDispCash
Cylanceunsafe
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojan.Win32.ATMPOT.A
TencentWin32.Trojan-Banker.Atm.Ytjl
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.74355382.susgen
FortinetW32/ATM.P!tr
BitDefenderThetaGen:NN.ZedlaF.36680.bW8@aONvSAC
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Fragtor.327453?

Fragtor.327453 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment