Malware

Fragtor.419077 removal tips

Malware Removal

The Fragtor.419077 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.419077 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the embedded pe malware family
  • Attempts to modify proxy settings
  • Touches a file containing cookies, possibly for information gathering
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Fragtor.419077?


File Info:

name: 2E6EED0CAE349A5A5329.mlw
path: /opt/CAPEv2/storage/binaries/025665379b14a52b5ebb4d3501316da506f076c2ab955a11bf12c0f4513465fe
crc32: 5CE129CC
md5: 2e6eed0cae349a5a53297553750fe44b
sha1: 352cebf75eebb2161e48d01d3f05ca2de8e46df0
sha256: 025665379b14a52b5ebb4d3501316da506f076c2ab955a11bf12c0f4513465fe
sha512: 3854f76179c06bd413e99b1c0033f010624718212668fbd9e6e172d3e619a2793a7bfe469001b624a3e8e92b5e5ec0b8a1355bf1aaab5cc9c89ada1a2324c758
ssdeep: 24576:nGz2eGfXEJTtpbhWnYW/rPaZWiXn1A0c0MmAG6dAkQ8eBYrFUsnPG34U5:nu2qZQYCDaZWwn+0c0EHGh8eBY5USZU5
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18395CF2AF69240F9CA411C71459A277BDE34BE565A22CFF79330FE2B2D32241D53712A
sha3_384: 0a80df326481dcad2784bfe07e4ad0ae1330d141f0a39a76d0056fd344b0c5b91d4a7f841830de4804ff42e1bc32fc61
ep_bytes: 558bec6aff68f03d5a0068742f480064
timestamp: 2012-09-21 09:17:09

Version Info:

FileVersion: 1.0.0.0
FileDescription: 拼典记事本
ProductName: 拼典记事本
ProductVersion: 1.0.0.0
CompanyName: 张启鸿
LegalCopyright: 张启鸿 版权所有
Comments: 拼典记事本
Translation: 0x0804 0x04b0

Fragtor.419077 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
ElasticWindows.Generic.Threat
MicroWorld-eScanGen:Variant.Fragtor.419077
ClamAVWin.Trojan.Flystudio-9943951-0
FireEyeGeneric.mg.2e6eed0cae349a5a
CAT-QuickHealRisktool.Flystudio.17324
SkyhighBehavesLike.Win32.Generic.tc
McAfeeArtemis!2E6EED0CAE34
Cylanceunsafe
SangforTrojan.Win32.FlyStudio.Vkdd
K7AntiVirusTrojan ( 005246d51 )
K7GWTrojan ( 005246d51 )
CrowdStrikewin/malicious_confidence_70% (D)
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/FlyStudio.Injector.A potentially unwanted
APEXMalicious
CynetMalicious (score: 100)
BitDefenderGen:Variant.Fragtor.419077
AvastWin32:Evo-gen [Trj]
SophosGeneric Reputation PUA (PUA)
F-SecureTrojan:W32/DelfInject.R
VIPREGen:Variant.Fragtor.419077
Trapminemalicious.moderate.ml.score
EmsisoftGen:Variant.Fragtor.419077 (B)
GDataWin32.Application.PSE.1OV7PVV
GoogleDetected
Antiy-AVLRiskWare/Win32.FlyStudio.a
Kingsoftmalware.kb.a.1000
XcitiumWorm.Win32.Dropper.RA@1qraug
ArcabitTrojan.Fragtor.D66505
MicrosoftTrojan:Win32/Wacatac.B!ml
VaristW32/Trojan.CLL.gen!Eldorado
AhnLab-V3Trojan/Win.Generic.R617837
ALYacGen:Variant.Fragtor.419077
MAXmalware (ai score=82)
VBA32BScope.Trojan.Downloader
MalwarebytesGeneric.Malware.AI.DDS
TrendMicro-HouseCallTROJ_GEN.R002H0CJO23
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CoinMiner.PHP!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.75eebb
DeepInstinctMALICIOUS

How to remove Fragtor.419077?

Fragtor.419077 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment