Malware

Fragtor.502785 (file analysis)

Malware Removal

The Fragtor.502785 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.502785 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Installs itself for autorun at Windows startup

How to determine Fragtor.502785?


File Info:

name: 162EA3E5FF63237C975B.mlw
path: /opt/CAPEv2/storage/binaries/da09f289215f37abb0ecb4b04c021e2ece600ec3d16d84c1b6a46c6397f63da1
crc32: C8913733
md5: 162ea3e5ff63237c975bd2b246049c28
sha1: 429291461709bf87760b7b59fcce89484063b001
sha256: da09f289215f37abb0ecb4b04c021e2ece600ec3d16d84c1b6a46c6397f63da1
sha512: fcc0d251b4b39f085455d71231a5eb3e12783ff5a45a31e37e4ac705ddb444cf23a6df7ad0ec711ebfc323bc79808d63cfcaa365b97bffa5f71728ad778cb42f
ssdeep: 768:Z4HvpOmoZ0vPP3lLuzZPKqMXLQUYC2xRi:Z4HvpDo4PP3lLuBZMMTCX
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T123E2CA597E448CFBD960173984E7C7762A7CF180C6234B62F660B7308B737A5219B26E
sha3_384: 5e5d6d0f612255cc6f91dd283517cb4f87278945cde90f41bf31615b4f7c2aee3f0304afb43df9b6f2729a1ea05cd486
ep_bytes: 57565383ec108b5c24248b7424208b7c
timestamp: 2024-02-09 07:58:03

Version Info:

0: [No Data]

Fragtor.502785 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Fragtor.502785
FireEyeGeneric.mg.162ea3e5ff63237c
SkyhighBehavesLike.Win32.Injector.nm
McAfeeGenericRXWN-OT!162EA3E5FF63
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZedlaF.36744.b46@aKu0tui
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent_AGen.DDU
CynetMalicious (score: 100)
BitDefenderGen:Variant.Fragtor.502785
AvastWin32:TrojanX-gen [Trj]
RisingTrojan.Agent!8.B1E (TFE:5:uWvjN6tdkdU)
VIPREGen:Variant.Fragtor.502785
EmsisoftGen:Variant.Fragtor.502785 (B)
GDataGen:Variant.Fragtor.502785
GoogleDetected
MAXmalware (ai score=81)
Antiy-AVLTrojan/Win32.Wacatac
ArcabitTrojan.Fragtor.D7AC01
MicrosoftTrojan:Win32/Wacatac.B!ml
AhnLab-V3Trojan/Win.Generic.R634666
Cylanceunsafe
PandaTrj/Chgt.AD
IkarusTrojan.Win32.Agent
FortinetW32/Agent_AGen.DDU!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Fragtor.502785?

Fragtor.502785 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment