Malware

Fragtor.503155 (file analysis)

Malware Removal

The Fragtor.503155 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.503155 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Fragtor.503155?


File Info:

name: 9488E8510EAD9E026CBB.mlw
path: /opt/CAPEv2/storage/binaries/9b3cb51ad5236cb21c7f5cd5ed026555be5f1164f0223ae7464f609c126e4cc1
crc32: CB43A1D9
md5: 9488e8510ead9e026cbb5ee74255f2ab
sha1: 7322488b2e99cf73cf62e8e1633f583908e1c0b0
sha256: 9b3cb51ad5236cb21c7f5cd5ed026555be5f1164f0223ae7464f609c126e4cc1
sha512: 283a6c387150555546f46c25d1e4542af69f41393625721735364b3a2db0b047d5fa700378a121171bb427da94b01f1718116250f5c9a7111dd00283b861d63a
ssdeep: 768:idp4/SFqooZ22ePP3lLuzZPKqgyd++Yvj3R5:idp4/SFqoo5ePP3lLuBZgyd+9vL
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T138E2E9597E048CEBE950533D84E7C7762A7CF180CA235F62F651A7308B337A1219B26E
sha3_384: 878dccd258030f17ed9ef26336ecf655cb8a30403065ad5f7d1529abf99882d0c94167656b8ea91e6ea5c2662bb40248
ep_bytes: 57565383ec108b5c24248b7424208b7c
timestamp: 2024-02-09 00:36:35

Version Info:

0: [No Data]

Fragtor.503155 also known as:

LionicTrojan.Win32.Convagent.4!c
MicroWorld-eScanGen:Variant.Fragtor.503155
FireEyeGen:Variant.Fragtor.503155
CAT-QuickHealTrojan.Convagent
SkyhighBehavesLike.Win32.BadFile.nm
McAfeeGenericRXWN-OT!9488E8510EAD
VIPREGen:Variant.Fragtor.503155
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005b1a3b1 )
AlibabaTrojan:Win32/Injector.3542d539
K7GWTrojan ( 005b1a3b1 )
CrowdStrikewin/malicious_confidence_100% (W)
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Injector.ETQB
KasperskyVHO:Trojan.Win32.Convagent.gen
BitDefenderGen:Variant.Fragtor.503155
NANO-AntivirusTrojan.Win32.AgentAGen.kivbut
AvastWin32:TrojanX-gen [Trj]
RisingTrojan.Agent!8.B1E (TFE:5:e4D87Zyk9sJ)
EmsisoftGen:Variant.Fragtor.503155 (B)
F-SecureTrojan.TR/Agent_AGen.wmggu
DrWebBACKDOOR.Trojan
SophosMal/Generic-S
MAXmalware (ai score=88)
GDataGen:Variant.Fragtor.503155
GoogleDetected
AviraTR/Agent_AGen.wmggu
VaristW32/Agent.IHW.gen!Eldorado
Antiy-AVLTrojan/Win32.Wacatac
ArcabitTrojan.Fragtor.D7AD73
ZoneAlarmVHO:Trojan.Win32.Convagent.gen
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win.Generic.R634642
BitDefenderThetaGen:NN.ZedlaF.36744.b46@a4xUU8f
ALYacGen:Variant.Fragtor.503155
Cylanceunsafe
PandaTrj/Chgt.AD
IkarusTrojan.Win32.Agent
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.DDP!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Fragtor.503155?

Fragtor.503155 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment