Malware

Fragtor.338033 (file analysis)

Malware Removal

The Fragtor.338033 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.338033 virus can do?

  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Fragtor.338033?


File Info:

name: CF4751AA12C81A79C4E5.mlw
path: /opt/CAPEv2/storage/binaries/7b0b426b1a3f4ea6dff8ff5a55d54fc6099a298cf793e1f53c6590e4fc97aa0c
crc32: 9CEBB520
md5: cf4751aa12c81a79c4e575eaa80a7d17
sha1: 3f9aab594d6ee0fc53bf6eaf8014e3601d8d8c9b
sha256: 7b0b426b1a3f4ea6dff8ff5a55d54fc6099a298cf793e1f53c6590e4fc97aa0c
sha512: 8b73471ae5150f9a492f0be1269f33303c3c2ae9a8cbe906f85410d7a0f22acbb388beac12e7ae2e684734bd3e592c55a192d119c07e914abfb8442026652694
ssdeep: 49152:d1+3Q6nhWTZaqdwk0c05HGioA+s8KuqGaX0ToIBAUZLY:n2bhWYqdwkLcHHoDJBAUZL
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T196D5E017F392C0A7E01A15704D366B395D71EE721B178693B7ECFEAC1E36BB08861069
sha3_384: 84cdc456535e690172f72ed835f1c7ba367ba6e21f8b023f32ed1f5a9db93bdc23a0930fd08e6947f96f1139a1c0210a
ep_bytes: 558bec6aff6860e366006874cc490064
timestamp: 2013-03-15 02:25:08

Version Info:

0: [No Data]

Fragtor.338033 also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Fragtor.338033
FireEyeGeneric.mg.cf4751aa12c81a79
SkyhighBehavesLike.Win32.Generic.vc
ALYacGen:Variant.Fragtor.338033
MalwarebytesGeneric.Malware.AI.DDS
K7GWTrojan ( 005246d51 )
K7AntiVirusTrojan ( 005246d51 )
ArcabitTrojan.Fragtor.D52871
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Trojan.Flystudio-9943951-0
BitDefenderGen:Variant.Fragtor.338033
AvastWin32:Evo-gen [Trj]
SophosGeneric ML PUA (PUA)
F-SecureTrojan:W32/DelfInject.R
VIPREGen:Variant.Fragtor.338033
EmsisoftGen:Variant.Fragtor.338033 (B)
SentinelOneStatic AI – Malicious PE
VaristW32/Trojan.CLL.gen!Eldorado
MAXmalware (ai score=86)
Antiy-AVLTrojan/Win32.FlyStudio.a
Kingsoftmalware.kb.a.960
XcitiumWorm.Win32.Dropper.RA@1qraug
MicrosoftProgram:Win32/Wacapew.C!ml
GDataWin32.Trojan.PSE.15EXSUN
GoogleDetected
Cylanceunsafe
IkarusGen.Heur
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CoinMiner.PHP!tr
BitDefenderThetaGen:NN.ZexaF.36792.2sW@a09H9Ugb
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.94d6ee
DeepInstinctMALICIOUS

How to remove Fragtor.338033?

Fragtor.338033 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment