Malware

Fragtor.35425 (B) removal instruction

Malware Removal

The Fragtor.35425 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.35425 (B) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial binary language: Russian
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Fragtor.35425 (B)?


File Info:

crc32: ECA13622
md5: 75619cdf934c4285b898efe54e9738cd
name: 75619CDF934C4285B898EFE54E9738CD.mlw
sha1: 737ce8a045dd35d56c6b7d205556858f003924a9
sha256: b78e2ecd2c5a0a99781173b2ce12fb98d393722f31972d4264dabd897364eb15
sha512: 2f8e9ff6a04c72c120846cef3753a883711b11dba93f32205c52acbdddaff183e3c1dc534eacdd8f696a96e4c83bb5da29fe3bf0fd24c2ec38ce936be9aa710d
ssdeep: 24576:BXy7XOX2XydXOugUX+X+EoGXGySaN2j28mhkIM2HpxgPh01z:FimuyZOQ2MeGHaNuymh01
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

LegalCopyright: Cat Logic
InternalName: Catalogic Book List
FileVersion: 0.8.0.13
CompanyName: Cat Logic
LegalTrademarks:
Comments:
ProductName: CatList
ProductVersion:
FileDescription: x414x43ex43cx430x448x43dx44fx44f x431x438x431x43bx438x43ex442x435x43ax430
OriginalFilename:
Translation: 0x0419 0x04e3

Fragtor.35425 (B) also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 005821bc1 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Fragtor.35425
CrowdStrikewin/malicious_confidence_70% (W)
K7GWTrojan ( 005821bc1 )
CyrenW32/Kryptik.FPV.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HLIQ
APEXMalicious
AvastWin32:CrypterX-gen [Trj]
KasperskyHEUR:Trojan.Win32.Staser.gen
BitDefenderGen:Variant.Fragtor.35425
MicroWorld-eScanGen:Variant.Fragtor.35425
Ad-AwareGen:Variant.Fragtor.35425
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34294.fz0@aKkT!vp
TrendMicroTROJ_GEN.R067C0PJV21
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeGen:Variant.Fragtor.35425
EmsisoftGen:Variant.Fragtor.35425 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1145671
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataWin32.Trojan.PSE.13M60MZ
AhnLab-V3Trojan/Win.UA.R447580
McAfeeGenericRXOV-UA!75619CDF934C
MAXmalware (ai score=86)
MalwarebytesAdware.Agent.SFP.Generic
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R067C0PJV21
RisingTrojan.Kryptik!1.AA55 (CLASSIC)
FortinetW32/Kryptik.HATU!tr
AVGWin32:CrypterX-gen [Trj]

How to remove Fragtor.35425 (B)?

Fragtor.35425 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment