Malware

Fragtor.9659 (B) removal guide

Malware Removal

The Fragtor.9659 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fragtor.9659 (B) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • A process attempted to delay the analysis task.
  • Expresses interest in specific running processes
  • Reads data out of its own binary image
  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Checks the CPU name from registry, possibly for anti-virtualization
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine Fragtor.9659 (B)?


File Info:

crc32: F69ED302
md5: cbd118707938b5d036ee0030e38cd147
name: CBD118707938B5D036EE0030E38CD147.mlw
sha1: d75ebc012670780a8825f21760494ef1b6da217c
sha256: 769a9ae9ab253e8cce64c35143eff02b2ae70e53465ab4aa4f6cf1b2d4fe698e
sha512: 3ae75763e82c64c03d38ee6e563523ed9e167fd00d9e7ec221b1a3d17017207b989ffe28c183f35fc428c384e95e2305b8f9e880c45de77a11edc06ab073b9df
ssdeep: 98304:31TzRGKPodCfDP8F2RbfhW1WuE4yPDWPCqKz9cT/m/DkgWxtyUW6B:F3wKPog8F2Rbf4Wn4+DW6qU9B/6yHM
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: sagzmeoloke.iwi
ProductVersion: 7.51.22.123
Copyright: Copyrighz (C) 2021, fudkageta
Translation: 0x0122 0x003a

Fragtor.9659 (B) also known as:

K7AntiVirusTrojan ( 0058098a1 )
Elasticmalicious (high confidence)
ALYacGen:Variant.Fragtor.9658
CylanceUnsafe
SangforTrojan.Win32.Save.a
BitDefenderGen:Variant.Fragtor.9659
K7GWTrojan ( 0058098a1 )
CyrenW32/Kryptik.EWJ.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
CynetMalicious (score: 100)
MicroWorld-eScanGen:Variant.Fragtor.9659
Ad-AwareGen:Variant.Fragtor.9659
BitDefenderThetaGen:NN.ZexaF.34088.@t1@aGAe!Zgi
FireEyeGeneric.mg.cbd118707938b5d0
EmsisoftGen:Variant.Fragtor.9659 (B)
SentinelOneStatic AI – Suspicious PE
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
ArcabitTrojan.Fragtor.D25BB
GDataGen:Variant.Fragtor.9659
McAfeePacked-GDT!CBD118707938
MAXmalware (ai score=83)
VBA32BScope.TrojanRansom.Blocker
IkarusTrojan.Crypt
Qihoo-360HEUR/QVM10.1.6297.Malware.Gen

How to remove Fragtor.9659 (B)?

Fragtor.9659 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment