Malware

How to remove “Fugrafa.156255”?

Malware Removal

The Fugrafa.156255 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.156255 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (4 unique times)
  • Creates RWX memory
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Serbian
  • The binary likely contains encrypted or compressed data.
  • Collects information to fingerprint the system

Related domains:

telete.in
apps.identrust.com

How to determine Fugrafa.156255?


File Info:

crc32: E987E014
md5: 249bfefbe3f04b61f22908198f9525ef
name: 249BFEFBE3F04B61F22908198F9525EF.mlw
sha1: d7433e98d4509cca966171f2142ee613e0387ed8
sha256: 6cc1603b94f12e2681b99c14c33b910cc07cbb9f823a3aa21cdac80b1aaccdc2
sha512: 80d605b37dc223bab349ff0e9b449a5dafe05f8ee2d498ce3da18e87669844b89e9de2f7f0358a06079876e2eee5b6ab0db9dc442486ec197ab806495e6ca49d
ssdeep: 6144:F03b4aUejOM0MzBTLVzoxBNVGCKNIU5DJEPQIIS6kRlLQDLyXUVtl9o:Fe8rM1JVkxB1wfD6oZERlLeykVt
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: voygmuaroge.exe
FileVersion: 12.3.67.16
Copyright: Copyrighz (C) 2020, wodkaguds
ProductVersion: 50.11.20.78
Translation: 0x0274 0x0119

Fugrafa.156255 also known as:

K7AntiVirusTrojan ( 005690671 )
Elasticmalicious (high confidence)
DrWebTrojan.Packed2.43319
CynetMalicious (score: 100)
ALYacGen:Variant.Fugrafa.156255
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
K7GWTrojan ( 005690671 )
Cybereasonmalicious.8d4509
CyrenW32/Kryptik.EMQ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HLTM
APEXMalicious
AvastWin32:DropperX-gen [Drp]
ClamAVWin.Malware.Generic-9880039-0
KasperskyHEUR:Trojan-PSW.Win32.Racealer.gen
BitDefenderGen:Variant.Fugrafa.156255
MicroWorld-eScanGen:Variant.Fugrafa.156255
Ad-AwareGen:Variant.Fugrafa.156255
SophosML/PE-A + Troj/Krypt-K
McAfee-GW-EditionBehavesLike.Win32.Generic.gc
FireEyeGeneric.mg.249bfefbe3f04b61
EmsisoftTrojan.Crypt (A)
SentinelOneStatic AI – Malicious PE
MicrosoftRansom:Win32/StopCrypt.MYK!MTB
GridinsoftRansom.Win32.STOP.ko!se17961
GDataWin32.Trojan.BSE.1PF6OJF
AhnLab-V3Infostealer/Win.SmokeLoader.R432479
Acronissuspicious
McAfeeTrojan-FTUB!249BFEFBE3F0
MAXmalware (ai score=84)
VBA32BScope.Backdoor.Androm
MalwarebytesTrojan.MalPack.GS
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.D81F (CLASSIC)
IkarusTrojan-Spy.MSIL.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.ERHN!tr
AVGWin32:DropperX-gen [Drp]
Qihoo-360HEUR/QVM10.1.CAA3.Malware.Gen

How to remove Fugrafa.156255?

Fugrafa.156255 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment