Malware

About “Fugrafa.14822” infection

Malware Removal

The Fugrafa.14822 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.14822 virus can do?

  • A process created a hidden window
  • Uses Windows utilities for basic functionality
  • Writes a potential ransom message to disk
  • Network activity detected but not expressed in API logs
  • Likely virus infection of existing system binary
  • Uses suspicious command line tools or Windows utilities

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Fugrafa.14822?


File Info:

crc32: 595C9BAF
md5: 1d0ae9a5ce84d6abcb1250faf5ab9762
name: 1D0AE9A5CE84D6ABCB1250FAF5AB9762.mlw
sha1: d13efc6421313e5c18c6033250d203105effb29d
sha256: 73e12b06c03a7fc8cf693a2511a8d38e171d09d8b3559a6b15dc29b7a31cf2af
sha512: 4b646bedf173764b1c6c7cfba26844f1570e6ebb5d80192a031124243c307df63d90e9988f306db3813df4d1c9c3b39f0079f83926d219ca14407249921a6969
ssdeep: 6144:SdG7Lgoz2ZbS9QRblS/+l7YbzEYySE9g0K:SdugoSZbSKRC+BYlxOK
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2020
InternalName: assist.exe
FileVersion: 1.0.0.1
CompanyName: ASSIST
ProductName: ASSIST Service
ProductVersion: 1.0.0.1
FileDescription: ASSIST Service
OriginalFilename: assist.exe
Translation: 0x0409 0x04b0

Fugrafa.14822 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Fugrafa.14822
FireEyeGen:Variant.Fugrafa.14822
Qihoo-360HEUR/QVM20.1.8267.Malware.Gen
McAfeeGenericRXKD-HY!1D0AE9A5CE84
CylanceUnsafe
BitDefenderGen:Variant.Fugrafa.14822
AvastWin32:Dh-A [Heur]
KasperskyHEUR:Trojan.Win32.Generic
AlibabaRansom:Win32/generic.ali2000027
NANO-AntivirusTrojan.Win32.Encoder.gxziwu
Ad-AwareGen:Variant.Fugrafa.14822
EmsisoftGen:Variant.Fugrafa.14822 (B)
F-SecureHeuristic.HEUR/AGEN.1116537
DrWebTrojan.Encoder.30888
McAfee-GW-EditionGenericRXKD-HY!1D0AE9A5CE84
JiangminTrojan.Generic.ekbao
AviraHEUR/AGEN.1116537
Antiy-AVLTrojan/Win32.Wacatac
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Fugrafa.D39E6
ZoneAlarmTrojan.Win32.Schoolboy.gen
GDataGen:Variant.Fugrafa.14822
CynetMalicious (score: 85)
AhnLab-V3Malware/Win32.Generic.C3680047
BitDefenderThetaGen:NN.ZexaF.34590.mu0@am7FtJci
ALYacGen:Variant.Fugrafa.14822
MAXmalware (ai score=89)
VBA32BScope.Adware.Foxiebro
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Filecoder.Outsider.H
RisingTrojan.Filecoder!8.68 (TFE:dGZlOgXBWbkBsRk1Aw)
YandexTrojan.GenAsa!uA3Z52G/Tzc
FortinetW32/Outsider.J!tr.ransom
AVGWin32:Dh-A [Heur]
Cybereasonmalicious.5ce84d

How to remove Fugrafa.14822?

Fugrafa.14822 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment