Malware

Fugrafa.1355 removal tips

Malware Removal

The Fugrafa.1355 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.1355 virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Attempts to remove evidence of file being downloaded from the Internet
  • Attempts to delete volume shadow copies
  • Installs itself for autorun at Windows startup
  • Writes a potential ransom message to disk
  • Creates a hidden or system file
  • Creates a copy of itself
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

Related domains:

resumosdenovela.net
classemgmt.testbada.com
shampooherbal.com
www.hugedomains.com
ocsp.digicert.com
exaltation.info
crl3.digicert.com
commonsenseprotection.com
ebookstoreforyou.com

How to determine Fugrafa.1355?


File Info:

crc32: FB35C1CB
md5: cc721cbe4fa1287cf4abee948816e05a
name: CC721CBE4FA1287CF4ABEE948816E05A.mlw
sha1: 5bf38558abb3feee3a3cad38ebcf103df3b1f9c1
sha256: b1bf52506d60f999f0f018cdbd18a5530096f5126d69a1c99eab07d21c997b02
sha512: 637dcbd6fbb3e01c2af85af7aed90c17d77ca1c27e4dec303c887e52786cc9613616c94727300c6515ce2fd4f910d7ef4d06c8d1f5b30200c3348f848637c472
ssdeep: 6144:ISMPQFF58b1H2towR74r7kLeY4U3HUck:ISJFF41H2to07475A0
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Fugrafa.1355 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 004e08581 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.4200
CynetMalicious (score: 100)
ALYacGen:Variant.Fugrafa.1355
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.7387
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Starter.ali2000005
K7GWTrojan ( 004e08581 )
Cybereasonmalicious.e4fa12
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.TeslaCrypt.K
APEXMalicious
AvastWin32:TeslaCrypt-HQ [Trj]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Fugrafa.1355
NANO-AntivirusTrojan.Win32.Encoder.fakqmc
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
MicroWorld-eScanGen:Variant.Fugrafa.1355
TencentMalware.Win32.Gencirc.11694a45
Ad-AwareGen:Variant.Fugrafa.1355
ComodoMalware@#3dd44p3ph0iu4
BitDefenderThetaAI:Packer.9704E84C21
VIPRETrojan.Win32.Tescrypt.a (v)
McAfee-GW-EditionBehavesLike.Win32.Backdoor.dc
FireEyeGeneric.mg.cc721cbe4fa1287c
EmsisoftGen:Variant.Fugrafa.1355 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Bitman.wi
AviraTR/Crypt.ZPACK.Gen8
eGambitUnsafe.AI_Score_98%
Antiy-AVLTrojan/Generic.ASMalwS.2235476
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:Win32/Tescrypt.Q
AegisLabTrojan.Win32.Generic.4!c
GDataGen:Variant.Fugrafa.1355
AhnLab-V3Trojan/Win32.Tescrypt.R176984
Acronissuspicious
McAfeeGenericRXIN-MM!CC721CBE4FA1
MAXmalware (ai score=100)
VBA32BScope.Trojan.Encoder
MalwarebytesMalware.AI.664492479
PandaTrj/GdSda.A
RisingTrojan.Generic@ML.100 (RDML:uLPppVrFD1zkGcMgpOcUug)
YandexTrojan.GenAsa!e2sxspmfnQE
IkarusTrojan-Ransom.TeslaCrypt
FortinetW32/TeslaCrypt.K!tr.ransom
AVGWin32:TeslaCrypt-HQ [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Tescrypt.HgIASTIA

How to remove Fugrafa.1355?

Fugrafa.1355 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment