Malware

What is “Fugrafa.12334”?

Malware Removal

The Fugrafa.12334 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.12334 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Fugrafa.12334?


File Info:

crc32: 50A0BFC1
md5: 0e8c9a9088ec9a763018d08dee477cc9
name: 0E8C9A9088EC9A763018D08DEE477CC9.mlw
sha1: 1509b7c04e8b4ffdeb76b5d3ce8e426c574e0546
sha256: cdb61c6b1b624963eeae26261a547367b7aa98e0796fbbab4791bbfeeb4b0595
sha512: 4f5c708c7902ce122fd4b18db4206a5192b2a4d5279e7c2d160942361a05fc0b7c2a3bde8218fa9fb2f0f6a3944dac60cc368e3e129b95b4e957a9e51ac59d5c
ssdeep: 3072:d5Z/AJt05nYLUBZ56p9ShFfOAeOHE4JkpQfiCV:d5Z95am6pYFUOHY6D
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright ? 2004-2015 PiaoYun
InternalName: PYG_Loader
FileVersion: 1, 0, 0, 1
CompanyName: www.25pyg.com
PrivateBuild:
LegalTrademarks:
Comments: P.Y.Gx5b98x65b9x5185x5b58x8865x4e01x751fx6210x5668
ProductName: P.Y.Gx5b98x65b9x5185x5b58x8865x4e01x751fx6210x5668
SpecialBuild:
ProductVersion: 1, 0, 0, 1
FileDescription: PYG_Loader
OriginalFilename: PYG_Loader.exe
Translation: 0x0804 0x04b0

Fugrafa.12334 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
ALYacGen:Variant.Fugrafa.12334
CylanceUnsafe
ZillyaTrojan.Generik.Win32.60
CrowdStrikewin/malicious_confidence_90% (W)
BitDefenderGen:Variant.Fugrafa.12334
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
SymantecML.Attribute.HighConfidence
APEXMalicious
CynetMalicious (score: 100)
NANO-AntivirusTrojan.Win32.Golroted.eloaly
MicroWorld-eScanGen:Variant.Fugrafa.12334
Ad-AwareGen:Variant.Fugrafa.12334
BitDefenderThetaGen:NN.ZexaF.34088.ku0@aW!PZvhb
McAfee-GW-EditionBehavesLike.Win32.Dropper.cm
FireEyeGeneric.mg.0e8c9a9088ec9a76
EmsisoftGen:Variant.Fugrafa.12334 (B)
JiangminTrojan.Swizzor.ols
Antiy-AVLTrojan/Generic.ASMalwS.19CC995
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GridinsoftTrojan.Win32.Packed.oa!s1
ArcabitTrojan.Fugrafa.D302E
GDataGen:Variant.Fugrafa.12334
Acronissuspicious
McAfeeGenericRXBE-IA!0E8C9A9088EC
MAXmalware (ai score=85)
VBA32BScope.Trojan.Tiggre
MalwarebytesTrojan.MalPack
PandaTrj/Genetic.gen
RisingTrojan.Generic@ML.100 (RDML:/cNpmV8U8e1sbGUos0NIsw)
YandexTrojan.GenAsa!VITd0wTGN1g
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Generic.HgIASagA

How to remove Fugrafa.12334?

Fugrafa.12334 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment