Malware

Fugrafa.158426 malicious file

Malware Removal

The Fugrafa.158426 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.158426 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Fugrafa.158426?


File Info:

crc32: 18244AC8
md5: 5b6a096915721c01f30593239ab526d8
name: 5B6A096915721C01F30593239AB526D8.mlw
sha1: 67e5d7fbb1c9825705a7f482ace8a7eb3fd08b73
sha256: ffe44b5d79fbe69ebbfea843858221f9b8ff7a56335a406e05b37a89cc8918dc
sha512: 3d98b320ad802dc0343a47c7c4a8f42ef5eb7ab6a06e503eb0fb617ec87c80997ab9f1c8ccab6a2fabff5b91d5c3ba0532feb20c46c158d04b8405d19c4611b2
ssdeep: 768:YoLDjahoICS4AIiaVRShxdEe+T0iN2QwdincJ9JGEKvrDSLA6zbjoax1s3:9zICS4AT6GxdEe+TOdincJXvKvSLBh
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Fugrafa.158426 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 004bcce41 )
LionicTrojan.Win32.Nymaim.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacTrojan.Ransom.Filecoder
CylanceUnsafe
ZillyaTrojan.Nymaim.Win32.13241
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaRansom:Win32/BlackMatter.3b4f0e53
K7GWTrojan ( 004bcce41 )
Cybereasonmalicious.bb1c98
CyrenW32/Filecoder.BO.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.BlackMatter.A
APEXMalicious
AvastWin32:BlackMatter-B [Ransom]
KasperskyHEUR:Trojan.Win32.Nymaim.vho
BitDefenderGen:Variant.Fugrafa.158426
NANO-AntivirusVirus.Win32.Gen.ccmw
MicroWorld-eScanGen:Variant.Fugrafa.158426
TencentMalware.Win32.Gencirc.11cb8856
Ad-AwareGen:Variant.Fugrafa.158426
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34110.kmW@a0CQzuh
McAfee-GW-EditionBehavesLike.Win32.Generic.cz
FireEyeGeneric.mg.5b6a096915721c01
EmsisoftGen:Variant.Fugrafa.158426 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Nymaim.ffw
AviraTR/Crypt.ULPM.Gen
Antiy-AVLTrojan/Generic.ASMalwS.346F2EE
MicrosoftRansom:Win32/BlackMatter.MAK!MTB
ZoneAlarmHEUR:Trojan.Win32.Nymaim.vho
GDataGen:Variant.Fugrafa.158426
AhnLab-V3Trojan/Win.Generic.C4581612
Acronissuspicious
McAfeeGenericRXPN-SG!5B6A09691572
MAXmalware (ai score=85)
VBA32TScope.Malware-Cryptor.SB
MalwarebytesTrojan.MalPack
PandaTrj/CI.A
IkarusTrojan.Win32.Claretore
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Nymaim.A!tr
AVGWin32:BlackMatter-B [Ransom]
Paloaltogeneric.ml

How to remove Fugrafa.158426?

Fugrafa.158426 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment