Malware

Fragtor.70215 removal tips

Malware Removal

The Fragtor.70215 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.70215 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Fragtor.70215?


File Info:

name: BDCEE94D7484918BFE81.mlw
path: /opt/CAPEv2/storage/binaries/72a0bbe857641fcc94eb38c118347f5d732c8422c261ca4ccd4474c915c49b8c
crc32: 96D11256
md5: bdcee94d7484918bfe8101d13c5969e6
sha1: bcbdd95663113b14289c04d94f53edd8643fc399
sha256: 72a0bbe857641fcc94eb38c118347f5d732c8422c261ca4ccd4474c915c49b8c
sha512: a1764140539753a7a7360e8a78c5d01c60f6a99ea2fc2184492d1face55c924bb8a6bc195f4ad1f66e3366bee29efb85bef9b71a6b80377c68d5c476369bad87
ssdeep: 49152:dMgOD20S1JCmRB3My5l1RDi0uFMn4oHPKjofz+G0VAwZEkVTWX+fymX0+t:dhvj5c0lnRHPKjoiGvwZEkgXalt
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T171367D22F344613EC9AB1A3A9537A6589D7FBB613952CCA757F00C8C8F395403A3E647
sha3_384: 9f2d145e83caa0e7da989f7a8eed30445b4a022b3b94687b7d4ee5c034c0c37eb708ddca11684203452389a9c950c1e8
ep_bytes: 558bec83c4c0b800ed8500e8c058baff
timestamp: 2022-07-18 14:20:29

Version Info:

FileDescription: firebladetompero
FileVersion: 1.0.0.0
ProductName: firebladetompero
ProductVersion: 1.0.0.0
ProgramID: com.embarcadero.firebladetompero
Translation: 0x0409 0x04e4

Fragtor.70215 also known as:

LionicTrojan.Win32.Grandoreiro.a!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Fragtor.70215
SkyhighBehavesLike.Win32.Dropper.th
McAfeeArtemis!BDCEE94D7484
ZillyaTrojan.Grandoreiro.Win32.1502
SangforSpyware.Win32.Grandoreiro.V486
K7AntiVirusSpyware ( 00594bfa1 )
AlibabaTrojanDownloader:Win32/Grandoreiro.ad19efff
K7GWSpyware ( 00594bfa1 )
CrowdStrikewin/malicious_confidence_100% (W)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Spy.Grandoreiro.BI
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Downloader.Win32.Grandoreiro.gen
BitDefenderGen:Variant.Fragtor.70215
AvastWin32:SpywareX-gen [Trj]
TencentMalware.Win32.Gencirc.13ad0b9d
EmsisoftGen:Variant.Fragtor.70215 (B)
F-SecureHeuristic.HEUR/AGEN.1329320
VIPREGen:Variant.Fragtor.70215
TrendMicroTrojanSpy.Win32.GRANDOREIRO.SM
FireEyeGeneric.mg.bdcee94d7484918b
SophosTroj/Delf-HOE
IkarusTrojan-Spy.Agent
GDataGen:Variant.Fragtor.70215
GoogleDetected
AviraHEUR/AGEN.1329320
Antiy-AVLTrojan[Downloader]/Win32.Grandoreiro
ArcabitTrojan.Fragtor.D11247
ZoneAlarmUDS:Trojan-Downloader.Win32.Grandoreiro.gen
MicrosoftTrojan:Win32/Wacatac.B!ml
AhnLab-V3Trojan/Win.Generic.C5179418
ALYacGen:Variant.Fragtor.70215
VBA32TScope.Trojan.Delf
Cylanceunsafe
PandaTrj/Chgt.AB
RisingDownloader.Grandoreiro!8.11E83 (TFE:6:Hpr9FUaAJlN)
MaxSecureTrojan.Malware.104310481.susgen
FortinetW32/Grandoreiro.BD!tr
AVGWin32:SpywareX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Fragtor.70215?

Fragtor.70215 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment