Malware

Fragtor.344989 removal instruction

Malware Removal

The Fragtor.344989 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.344989 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Deletes executed files from disk
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Fragtor.344989?


File Info:

name: 8698325ACEFF7FF76CB4.mlw
path: /opt/CAPEv2/storage/binaries/1524180df72592bc22f90428dbff16431e4efcde5cc3b1a5caa72c3af2144511
crc32: D7D43A79
md5: 8698325aceff7ff76cb4ff79508def08
sha1: e7620d89bdb81e3c5a645080f9b7943d71f7f0b7
sha256: 1524180df72592bc22f90428dbff16431e4efcde5cc3b1a5caa72c3af2144511
sha512: c43781204dbea1c013e21c9e69cd0d4975860028ef334d665a9fbd0bc68332cab0c71b42d3f36f1b6e8c64a9c5681a4d3fc093b8644c6a060f52a617c3044fc8
ssdeep: 1536:jlj4xUzGbgnyspWl3pruXe+GXIuhuMVPkZL9a0l8fNR:p453sqD+ApVPEqf
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T15943023B15B18247E8F91CB64AFB4EA1581D404AEF8930CB020A1DEB9ECD74A5D5DD27
sha3_384: 38a1512b063730ece0d27587e237ccddbd327d3e798cc016f457dafac970bdf400bc5279c9d47f3e7ade75c9dca2fdae
ep_bytes: 68000000005a5181efd994fffeb8e29f
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Fragtor.344989 also known as:

MicroWorld-eScanGen:Variant.Fragtor.344989
FireEyeGeneric.mg.8698325aceff7ff7
SkyhighBehavesLike.Win32.Generic.qc
ALYacGen:Variant.Fragtor.344989
MalwarebytesTrojan.MalPack
ZillyaTrojan.Copak.Win32.13473
CynetMalicious (score: 100)
K7AntiVirusTrojan ( 0058c5ff1 )
BitDefenderGen:Variant.Fragtor.344989
K7GWTrojan ( 0058c5ff1 )
Cybereasonmalicious.9bdb81
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.HITO
APEXMalicious
ClamAVWin.Malware.Fragtor-10012441-0
KasperskyHEUR:Trojan.Win32.Copak.vho
NANO-AntivirusTrojan.Win32.PackedENT.imwzuv
RisingTrojan.Kryptik!1.D12D (CLASSIC)
F-SecureTrojan.TR/Crypt.Agent.vqgzx
BitDefenderThetaGen:NN.ZexaF.36792.dmW@a02ZKIf
VIPREGen:Variant.Fragtor.344989
SophosTroj/Agent-BGZJ
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.hadvt
AviraTR/Crypt.Agent.vqgzx
MAXmalware (ai score=89)
Antiy-AVLGrayWare/Win32.Kryptik.ffp
Kingsoftmalware.kb.b.804
XcitiumMalCrypt.Indus!@1qrzi1
ArcabitTrojan.Fragtor.D5439D
ZoneAlarmHEUR:Trojan.Win32.Copak.vho
GDataGen:Variant.Fragtor.344989
VaristW32/Copak.F.gen!Eldorado
AhnLab-V3Malware/Win32.Generic.R369371
VBA32BScope.Trojan.Wacatac
Cylanceunsafe
TencentTrojan.Win32.Copak.hb
IkarusTrojan.Kryptik
FortinetW32/Kryptik.HITO!tr
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Fragtor.344989?

Fragtor.344989 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment