Malware

Fragtor.88480 (B) removal

Malware Removal

The Fragtor.88480 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.88480 (B) virus can do?

  • At least one process apparently crashed during execution
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is likely packed with VMProtect
  • Authenticode signature is invalid

How to determine Fragtor.88480 (B)?


File Info:

name: E9BF7A760553855F0A51.mlw
path: /opt/CAPEv2/storage/binaries/040d6bf2263ecabcf0593742ea6fdb3461997ff101061332fd5ec6b9feae66d7
crc32: 45C2796A
md5: e9bf7a760553855f0a51dbb8c0d3859c
sha1: 3b58b6717c3c4eaa60b238b26100d32aba467332
sha256: 040d6bf2263ecabcf0593742ea6fdb3461997ff101061332fd5ec6b9feae66d7
sha512: 888c6d450049f004268744ab4798dada0d40b01740eb8f41bbcde9411f446d15b547aa900f8e980663a7d46e927e1820591aeb5611efe3cbe7bfa2f06b212b74
ssdeep: 12288:fgudMFIV5yvRdKYRv5qA5TzeFPUPxqs8jpf3jRTJqaCvLN5vn1aXsnn23sGKc87e:3yFI+vR8YR7VqF3jF3jl87+skspc8xFF
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BDF423AB6343A092C07809756C176E4D2760B812193DBB474F393F1DAEAAB7B7DD102C
sha3_384: 1667323a6f190620d4662a2bf45c24b1956881e1a896d3b850c196800bc38fcac56a62792e0d852555459fc36b70ac7f
ep_bytes: 68332363c1e8736a0a0099e101908001
timestamp: 2021-05-11 01:53:55

Version Info:

FileVersion: 1.0.0.0
FileDescription: 2.2.2.2
ProductName: 1.0.0.1
ProductVersion: 1.0.0.0
CompanyName: by阿三
LegalCopyright: 印度阿三
Comments: 4.4.4.4
Translation: 0x0804 0x04b0

Fragtor.88480 (B) also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Fragtor.88480
FireEyeGeneric.mg.e9bf7a760553855f
CAT-QuickHealTrojan.GenericRI.S28110539
ALYacGen:Variant.Fragtor.88480
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusAdware ( 004b942f1 )
K7GWAdware ( 004b942f1 )
CrowdStrikewin/malicious_confidence_90% (D)
BitDefenderThetaGen:NN.ZexaF.34742.TC0@a0LRnTib
CyrenW32/Trojan.JO.gen!Eldorado
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/GenKryptik.DIEQ
APEXMalicious
ClamAVWin.Malware.FlyAgent-9949842-1
KasperskyTrojan.Win32.CMY3U.eve
BitDefenderGen:Variant.Fragtor.88480
TencentTrojan-Spy.Win32.Keylogger.fa
Ad-AwareGen:Variant.Fragtor.88480
TACHYONTrojan/W32.CMY3U.745472
EmsisoftGen:Variant.Fragtor.88480 (B)
ComodoTrojWare.Win32.Agent.OSCF@5rs7jr
ZillyaTrojan.Keylogger.Win32.1
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
Trapminemalicious.high.ml.score
SophosGeneric ML PUA (PUA)
IkarusTrojan.Win32.Krypt
GDataGen:Variant.Fragtor.88480
JiangminTrojan.CMY3U.oh
ArcabitTrojan.Fragtor.D159A0
ZoneAlarmTrojan.Win32.CMY3U.eve
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.SFLMYVdC.R497028
McAfeeGenericRXAA-AA!E9BF7A760553
MAXmalware (ai score=81)
MalwarebytesSpyware.KeyLogger
RisingTrojan.Generic@AI.100 (RDML:UKZ88zeBCRDfpab+ej7BiA)
YandexTrojanSpy.KeyLogger!hmBjlV8Vw5c
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/KeyLogger.NUK!tr
AVGWin32:SpywareX-gen [Trj]
Cybereasonmalicious.605538
AvastWin32:SpywareX-gen [Trj]

How to remove Fragtor.88480 (B)?

Fragtor.88480 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment