Malware

How to remove “Fragtor.77069”?

Malware Removal

The Fragtor.77069 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.77069 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Sample contains Overlay data
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • The PE file contains a PDB path
  • Creates RWX memory
  • NtSetInformationThread: attempt to hide thread from debugger
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Fragtor.77069?


File Info:

name: E179F467358ED2BDEA67.mlw
path: /opt/CAPEv2/storage/binaries/eaa45283c3b781c80f245c82ba40fd99e983e6d05fd28a590085c4e9463fa5bf
crc32: 059D7A0F
md5: e179f467358ed2bdea67995fb46a3d35
sha1: 87ab072f88c72ca6977dcb1fcefe7ba376c438e2
sha256: eaa45283c3b781c80f245c82ba40fd99e983e6d05fd28a590085c4e9463fa5bf
sha512: 71c963a27f69fb538c79215aa51ea0d60715a12edc01226fefb4f341b0c1bea7424390db8e014d9eebc9495c2bd76a66ae9dba39e34ba95682aa67cb06688f24
ssdeep: 98304:VtBaRzX7+UGKuWxReFGl/UHYJnzFOHf/g8T9LfdsR/P:VtgRWF+xR5l/UOJgXnJL0/P
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E3F53302FA447E65EB228874B12BD645D671AD10D7A2994F6780BC49DFB4281F4FEC0F
sha3_384: 5cdd9377ecd4785ddf67449d43b48b60c9f057b05c9fc310fee4f4c5e3e3abd6a5a009f82021a054bb3e80839832ea64
ep_bytes: 60e8d9feffff6183ec045053b8803f9c
timestamp: 2022-06-13 23:32:01

Version Info:

0: [No Data]

Fragtor.77069 also known as:

BkavW32.AIDetect.malware2
MicroWorld-eScanGen:Variant.Fragtor.77069
FireEyeGeneric.mg.e179f467358ed2bd
McAfeeArtemis!E179F467358E
CylanceUnsafe
VIPREGen:Variant.Fragtor.77069
Cybereasonmalicious.f88c72
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/GenKryptik.FVQH
APEXMalicious
BitDefenderGen:Variant.Fragtor.77069
AvastWin32:Evo-gen [Susp]
Ad-AwareGen:Variant.Fragtor.77069
EmsisoftGen:Variant.Fragtor.77069 (B)
McAfee-GW-EditionBehavesLike.Win32.Dropper.wc
Trapminemalicious.high.ml.score
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Suspicious PE
GDataWin32.Trojan.PSE.DH3FFW
AviraTR/Crypt.XPACK.Gen5
ArcabitTrojan.Fragtor.D12D0D
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34786.AV3@aWwW46mj
ALYacGen:Variant.Fragtor.77069
MAXmalware (ai score=82)
VBA32BScope.Trojan.Kraplick.vck
MalwarebytesMalware.Heuristic.1003
RisingTrojan.Generic@AI.100 (RDML:jo9bx01QI2tatawr6IRyqQ)
IkarusTrojan.Win32.Krypt
FortinetW32/GenKryptik.FPAJ!tr
AVGWin32:Evo-gen [Susp]
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Fragtor.77069?

Fragtor.77069 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment