Malware

Fragtor.527990 removal guide

Malware Removal

The Fragtor.527990 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.527990 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is likely packed with VMProtect
  • Authenticode signature is invalid
  • Binary file triggered YARA rule
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Fragtor.527990?


File Info:

name: DBDE59A53DB6B622C99B.mlw
path: /opt/CAPEv2/storage/binaries/309514665caa6ba8146aa09ced8054a76bc19fd094d4203c0615b983b80a1540
crc32: ABB216F9
md5: dbde59a53db6b622c99b50c3012215bd
sha1: 0aa5a624157ae373257486bd069958801addefd4
sha256: 309514665caa6ba8146aa09ced8054a76bc19fd094d4203c0615b983b80a1540
sha512: af12f2b856ee0fcf8eae9d30b225a9ac1021d8eb2e7267b2b29a0ba1f820802e8c1b6661de6456cf1f6d0548b2cf5ab36a83671e349c33cc7014d02995627658
ssdeep: 1536:4CfsNQljjXm5rRYiGj4y1RqnDx0CtKmXH0eJCc5WWGPuPsU/wQBz8Se:4CfsNQlXm5rO4uCYLeJhWFGPTo9S
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1C673F15229C9C2F3E05389F4966BCCBEF32844407A758A9367931E40E573973A07DB9B
sha3_384: b071b56c042df3f4d41bbc41fd75e7d97b7afdade616f352d08006da6ebcc1982346eebeaf376c60e31d8d7ac8cb7369
ep_bytes: 68b1d890fae8d0a80000f9fa218a5112
timestamp: 2018-01-10 16:02:44

Version Info:

0: [No Data]

Fragtor.527990 also known as:

BkavW32.Common.BE59782A
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanGen:Variant.Fragtor.527990
FireEyeGeneric.mg.dbde59a53db6b622
ALYacGen:Variant.Fragtor.527990
SangforTrojan.Win32.Agent.Vwbl
BitDefenderThetaGen:NN.ZedlaF.36804.eC4@ambrh6j
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
APEXMalicious
TrendMicro-HouseCallTrojan.Win32.POSSIBLETHREAT.USBLCM24
BitDefenderGen:Variant.Fragtor.527990
SophosMal/Generic-S
F-SecureTrojan.TR/Crypt.XPACK.Gen
VIPREGen:Variant.Fragtor.527990
TrendMicroTrojan.Win32.POSSIBLETHREAT.USBLCM24
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Fragtor.527990 (B)
IkarusTrojan.Crypt
GoogleDetected
AviraTR/Crypt.XPACK.Gen
Antiy-AVLGrayWare/Win32.Pearfoos
XcitiumTrojWare.Win32.Trojan.XPACK.Gen@2ho5ur
ArcabitTrojan.Fragtor.D80E76
GDataGen:Variant.Fragtor.527990
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.RealProtect-LS.C5250107
DeepInstinctMALICIOUS
Cylanceunsafe
RisingTrojan.LpkHijack!1.9987 (CLASSIC)
YandexTrojan.GenAsa!/cK/JzlOVuE
MAXmalware (ai score=80)
FortinetW32/PossibleThreat
PandaTrj/Chgt.AD
alibabacloudTrojan.Win.UnkAgent

How to remove Fragtor.527990?

Fragtor.527990 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment