Malware

What is “Fugrafa.12803 (B)”?

Malware Removal

The Fugrafa.12803 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.12803 (B) virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Attempts to connect to a dead IP:Port (1 unique times)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Fugrafa.12803 (B)?


File Info:

name: D7F7D77757FE24E9BE9A.mlw
path: /opt/CAPEv2/storage/binaries/718142612609041f8d65b0083f119e2d614c29786fc0ef2b9c0b09f66ae52a62
crc32: 892E9741
md5: d7f7d77757fe24e9be9a1280d1339d5a
sha1: a7aef4e9a8604c7b3a58459d4aed7713febe4c39
sha256: 718142612609041f8d65b0083f119e2d614c29786fc0ef2b9c0b09f66ae52a62
sha512: 9bc6aadf5d81377e170f972a665a4a6edbcdb792905be59611a45050f787cc7946c1ff4b7bb61293772cd9539d99ace47975f0a32c9903699bf195df86c7982a
ssdeep: 1536:MarpgHE1TuoXIbuVNVSWTfwfumuU38u3yMXImbaLpY9nuBz2:BpgHEFuoXL7JwfuQ34NiuBz2
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C7B3F8D6BE8A9DA7FA21533D89F5D329133DFAC01B828B1B1D30983A47535E13EC5606
sha3_384: 5579e38d94bef20e7aec526f9d8c9b22466ef7c890704045b4cb0dfa60fca4858e1da62a60c5911470c6c72183501371
ep_bytes: 83ec0cc705d853400001000000e8ae08
timestamp: 2022-02-05 23:56:22

Version Info:

0: [No Data]

Fugrafa.12803 (B) also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Fugrafa.12803
CylanceUnsafe
BitDefenderGen:Variant.Fugrafa.12803
CrowdStrikewin/malicious_confidence_90% (D)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent.UNT
APEXMalicious
ClamAVWin.Malware.Agent-9870952-0
KasperskyHEUR:Trojan.Win32.Generic
MicroWorld-eScanGen:Variant.Fugrafa.12803
EmsisoftGen:Variant.Fugrafa.12803 (B)
F-SecureHeuristic.HEUR/AGEN.1121983
DrWebTrojan.Click3.17654
FireEyeGeneric.mg.d7f7d77757fe24e9
SophosML/PE-A
IkarusTrojan.Win32.Powerless
JiangminTrojan.Generic.bedxs
AviraHEUR/AGEN.1121983
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Fugrafa.12803
AhnLab-V3Malware/Win32.Generic.C2287090
McAfeeGenericRXAA-AA!D7F7D77757FE
MAXmalware (ai score=86)
VBA32BScope.Trojan.Win64.Shelma
MalwarebytesTrojan.Agent
PandaTrj/GdSda.A
RisingTrojan.Agent!8.B1E (RDMK:cmRtazoOcAzFDp4gIkgChxhw0MD+)
YandexTrojan.GenAsa!NUb9j368sNY
SentinelOneStatic AI – Suspicious PE
FortinetW32/Veil.C!tr
BitDefenderThetaGen:NN.ZexaF.34182.g8Y@au5Yj8i
AVGWin32:Trojan-gen
Cybereasonmalicious.757fe2
AvastWin32:Trojan-gen
MaxSecureTrojan.Malware.300983.susgen

How to remove Fugrafa.12803 (B)?

Fugrafa.12803 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment