Malware

Fragtor.734 (file analysis)

Malware Removal

The Fragtor.734 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.734 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (4 unique times)
  • Creates RWX memory
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Saami
  • The binary likely contains encrypted or compressed data.
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

Related domains:

telete.in
apps.identrust.com

How to determine Fragtor.734?


File Info:

crc32: 1A0F1924
md5: 825802c985a419817e33a395ea924787
name: 825802C985A419817E33A395EA924787.mlw
sha1: 4f0e7ffa6a77de7eed5084a783a04e6b8b597dbf
sha256: c4e7522db67d9ccd282873cbff6d97a3ddee685b5028f664b7338589d0db2772
sha512: b4eb6b2eabe2d1d455f7aabf94d0a0038097cbc8c0f05914bb7c71dbe33133d784ed2bb8f951d92a7451652406ae9abe5f14cfae16dd8eb4a3ca30fed0d3ac8b
ssdeep: 12288:W9akf2n8Ids2TYNqJZzoT1NZfBp17/0qVOkp6:Ealo2TYN+hoJzf1/0OOkp
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x020a 0x054a

Fragtor.734 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Siggen14.48594
CynetMalicious (score: 100)
ALYacGen:Variant.Fragtor.734
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
Cybereasonmalicious.a6a77d
CyrenW32/Emotet.BDB.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HLXB
APEXMalicious
AvastWin32:PWSX-gen [Trj]
ClamAVWin.Malware.Generic-9882834-0
KasperskyHEUR:Trojan-Ransom.Win32.Stop.gen
BitDefenderTrojan.GenericKDZ.76765
MicroWorld-eScanTrojan.GenericKDZ.76765
Ad-AwareTrojan.GenericKDZ.76765
SophosML/PE-A
BitDefenderThetaGen:NN.ZexaF.34050.LuW@aW8knodG
McAfee-GW-EditionBehavesLike.Win32.AdwareSEasy.hh
FireEyeGeneric.mg.825802c985a41981
EmsisoftTrojan.GenericKDZ.76765 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Stop.agu
eGambitUnsafe.AI_Score_84%
MicrosoftRansom:Win32/Aicat.A!ml
ArcabitTrojan.Fragtor.734
GDataWin32.Trojan.PSE.6UVC2
AhnLab-V3Trojan/Win.Azorult.R434936
Acronissuspicious
McAfeeRDN/Generic.grp
MAXmalware (ai score=85)
VBA32BScope.Trojan.CryptInject
MalwarebytesTrojan.MalPack.GS
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.C6FC (CLASSIC)
IkarusTrojan.Win32.Glupteba
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.HLIK!tr
AVGWin32:PWSX-gen [Trj]

How to remove Fragtor.734?

Fragtor.734 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment