Malware

What is “Fragtor.87893”?

Malware Removal

The Fragtor.87893 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.87893 virus can do?

  • A file was accessed within the Public folder.
  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • Uses Windows utilities for basic functionality
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Deletes executed files from disk

How to determine Fragtor.87893?


File Info:

name: 0800DF542BCBF0522267.mlw
path: /opt/CAPEv2/storage/binaries/261cfe24c55d44ad597d62e72c5f6897eb14ab9b1e6d017686033e5740ed9531
crc32: C13D071D
md5: 0800df542bcbf052226737331af0f90b
sha1: 6021da4b7a99e9a973a4f3e311f6a02166b66634
sha256: 261cfe24c55d44ad597d62e72c5f6897eb14ab9b1e6d017686033e5740ed9531
sha512: c9ef241fc155aa613a8dfadcef8ca980710616c2156681050c916513e9e3c4a8bcc0da2403709a98a9fdc1a9e1ef37c724b9779114680a95176dcf8b2fc836d9
ssdeep: 98304:14TVp2h6OdMEzy2dHQkr6dwTJyXOZA0hLOP76CL:14TVUh6/L2t6dwIXOZArP7lL
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12FF53303FA9C409FC94349B159739E9040F7ED126E50139BFBE078A4BEFA3959621739
sha3_384: fd0adbf1b0f09b1b286180589533a95c294e4f6542afecbe045758520e29d21a1affee4bbf81f9717c68e996ee2499bb
ep_bytes: 81ec840100005355565733db68018000
timestamp: 2016-04-02 03:20:09

Version Info:

CompanyName: Power Software Ltd
FileDescription: PowerISO Setup
FileVersion: 6.6.0.0
LegalCopyright: Copyright(c) 2004-2016
ProductName: PowerISO Setup
ProductVersion: 6.6.0.0
Translation: 0x0409 0x0000

Fragtor.87893 also known as:

BkavW32.Common.0BE5A3F2
LionicRiskware.Win32.FusionCore.1!c
MicroWorld-eScanGen:Variant.Fragtor.87893
FireEyeGen:Variant.Fragtor.87893
CAT-QuickHealTrojan.IGENERIC
SkyhighFusionCore
McAfeeArtemis!0800DF542BCB
MalwarebytesPUP.Optional.FusionCore
ZillyaAdware.DealPly.Win32.329081
SangforPUP.Win32.Agent.V2pg
K7AntiVirusTrojan ( 00575cff1 )
K7GWTrojan ( 00575cff1 )
Cybereasonmalicious.42bcbf
ESET-NOD32Win32/FusionCore.L potentially unwanted
Kasperskynot-a-virus:HEUR:AdWare.Win32.DealPly.gen
BitDefenderGen:Variant.Fragtor.87893
NANO-AntivirusTrojan.Win32.InstallCore.ekwgxt
SophosFusion Installer (PUA)
DrWebTrojan.InstallCore.2673
VIPREGen:Variant.Fragtor.87893
TrendMicroPUA.Win32.FusionCore.SMBD
EmsisoftGen:Variant.Fragtor.87893 (B)
VaristW32/FusionCore.A.gen!Eldorado
Antiy-AVLRiskWare[Downloader]/Win32.Funshion
MicrosoftPUA:Win32/Presenoker
ArcabitTrojan.Fragtor.D15755
ViRobotAdware.Fusioncore.3612720
ZoneAlarmnot-a-virus:VHO:Downloader.Win32.Funshion.gen
GDataWin32.Application.SearchProtect.AO
GoogleDetected
ALYacGen:Variant.Fragtor.87893
MAXmalware (ai score=78)
Cylanceunsafe
TrendMicro-HouseCallPUA.Win32.FusionCore.SMBD
RisingTrojan.Generic@AI.86 (RDML:8Vp8ZSJ+vam5Hp+kggpHsQ)
YandexRiskware.Agent!zJdQbqhsR3E
DeepInstinctMALICIOUS
CrowdStrikewin/grayware_confidence_100% (W)

How to remove Fragtor.87893?

Fragtor.87893 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment