Malware

Fragtor.41703 (file analysis)

Malware Removal

The Fragtor.41703 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.41703 virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Fragtor.41703?


File Info:

crc32: 155842E6
md5: c64018cb6196aa175c5422f5ea7d7e30
name: C64018CB6196AA175C5422F5EA7D7E30.mlw
sha1: 4ed08e261d14d752ba514d22f90da2545f21bc39
sha256: ee39be3af0b2ba0f037070fa9397aaffeee2b1a3c6d499e02e8bfec91995040b
sha512: 66d998655bbd011987da0b5745740941a1def11efcfc50e9f8398ba977c97d0b79af148ec013bc51df3750a9b490b071fb9a9ff0c084e0e696c303922d7b8da4
ssdeep: 6144:Kd+7jtAYDF/NkF0StI7u1V58rRkFXH7ITsq7igavwVfRA:K0PtAYD8miICn5uKFX79X
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: bomgpiaruci.iwa
ProductVersion: 13.54.17.21
Copyright: Copyrighz (C) 2021, fudkagat
Translation: 0x0187 0x046a

Fragtor.41703 also known as:

K7AntiVirusTrojan ( 0058a71f1 )
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Siggen3.5987
CynetMalicious (score: 100)
ALYacGen:Variant.Fragtor.41703
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
K7GWTrojan ( 0058a71f1 )
CyrenW32/Kryptik.FOQ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HNIG
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
ClamAVWin.Packed.Generic-9908949-0
KasperskyHEUR:Trojan-Spy.Win32.Stealer.gen
BitDefenderGen:Variant.Fragtor.41703
MicroWorld-eScanGen:Variant.Fragtor.41703
Ad-AwareGen:Variant.Fragtor.41703
SophosTroj/Krypt-BO
BitDefenderThetaGen:NN.ZexaF.34294.uq1@amQtQXmO
McAfee-GW-EditionGenericRXQS-XM!C64018CB6196
FireEyeGeneric.mg.c64018cb6196aa17
EmsisoftGen:Variant.Fragtor.41703 (B)
SentinelOneStatic AI – Malicious PE
JiangminBackdoor.Agent.kvp
WebrootW32.Trojan.Gen
AviraTR/AD.GenSHCode.bhlpm
eGambitPE.Heur.InvalidSig
MicrosoftRansom:Win32/StopCrypt.MSK!MTB
GDataWin32.Trojan.PSE.103ZJWE
AhnLab-V3CoinMiner/Win.Glupteba.R450411
Acronissuspicious
McAfeeGenericRXQS-XM!C64018CB6196
MAXmalware (ai score=80)
VBA32Malware-Cryptor.2LA.gen
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
RisingMalware.Heuristic!ET#76% (RDMK:cmRtazpBp0e1qUwYme84SeAl8L6f)
IkarusTrojan-Ransom.StopCrypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.DVL!tr
AVGWin32:MalwareX-gen [Trj]

How to remove Fragtor.41703?

Fragtor.41703 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment