Malware

Fragtor.349967 removal

Malware Removal

The Fragtor.349967 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.349967 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Deletes executed files from disk
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Fragtor.349967?


File Info:

name: 490BEF970E74CCE46BDE.mlw
path: /opt/CAPEv2/storage/binaries/8fd6e372f24da71efa79bf34cd6e687b40b041157957a8b4780580b68e9ed53c
crc32: 293EDFD9
md5: 490bef970e74cce46bde3a7a1e538a7e
sha1: 82a3d0cd09622eb1d5c10b7ce01f67059ce26fd1
sha256: 8fd6e372f24da71efa79bf34cd6e687b40b041157957a8b4780580b68e9ed53c
sha512: fa634dda7b0f41357c10b8ff23080140554b1cb4e06457c48d099e73095783c3db43b0323cbb5521d3db514741894b076f0d4e978e0167ad594f1799b9b1d62f
ssdeep: 1536:AKCqxZ6iiY+swTPrfH2OgrOgnEGmLWGdhrVehoscq7llkRE6hwxAidZXoTeoKU:ziYBEDOZDGWGfVcmWvAEQwrST
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1CCC302EEA622FED2E6754A7E0A9574FCE8DC090341478C3916CC5C5ECED0D9E88E8917
sha3_384: ad31f411b18d80ad5761050d4625fef754bd620be8c8a97e6175fd7c19d1adf79f8fe5bf15a963175f3f8ae17e797d7b
ep_bytes: b80000000057515a29c98b342483c404
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Fragtor.349967 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Fragtor.349967
FireEyeGeneric.mg.490bef970e74cce4
SkyhighBehavesLike.Win32.Generic.cm
ALYacGen:Variant.Fragtor.349967
MalwarebytesTrojan.MalPack.UPX
VIPREGen:Variant.Fragtor.349967
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0057da251 )
K7GWTrojan ( 0057da251 )
ArcabitTrojan.Fragtor.D5570F
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.EAHK
CynetMalicious (score: 100)
APEXMalicious
BitDefenderGen:Variant.Fragtor.349967
NANO-AntivirusTrojan.Win32.Packed2.jromzt
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.Copak.kg
TACHYONTrojan/W32.Agent.118400.L
SophosMal/HckPk-A
F-SecureTrojan.TR/Kryptik.hfrva
DrWebTrojan.Packed2.43250
ZillyaTrojan.Injector.Win32.1718867
EmsisoftGen:Variant.Fragtor.349967 (B)
IkarusTrojan.Win32.Injector
JiangminTrojan.Copak.cvyc
VaristW32/Kryptik.DYV.gen!Eldorado
AviraTR/Kryptik.hfrva
Antiy-AVLTrojan/Win32.Injector
XcitiumPacked.Win32.MUPX.Gen@24tbus
MicrosoftTrojan:Win32/Injector.RAQ!MTB
GDataGen:Variant.Fragtor.349967
GoogleDetected
AhnLab-V3Trojan/Win.Generic.R415325
McAfeeGenericRXON-VC!490BEF970E74
MAXmalware (ai score=89)
VBA32BScope.Trojan.Wacatac
Cylanceunsafe
PandaTrj/Genetic.gen
RisingTrojan.Injector!8.C4 (TFE:4:UAScj1xAP9P)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.EAHK!tr
BitDefenderThetaGen:NN.ZexaF.36792.hmX@aWOPPsl
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Fragtor.349967?

Fragtor.349967 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment