Malware

How to remove “Fugrafa.164258 (B)”?

Malware Removal

The Fugrafa.164258 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.164258 (B) virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Presents an Authenticode digital signature
  • Dynamic (imported) function loading detected
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality
  • Behavioural detection: Transacted Hollowing
  • Anomalous binary characteristics

How to determine Fugrafa.164258 (B)?


File Info:

name: 02DE7013423E6DF90837.mlw
path: /opt/CAPEv2/storage/binaries/dcbadbad640717d7b53b00ae8e2b64ee77d0d31e64a901a46b7ce33e52399134
crc32: D23DE4C2
md5: 02de7013423e6df9083720d8db98c456
sha1: 872858b29c034e2e14bbed234b4ac84b1dfa3831
sha256: dcbadbad640717d7b53b00ae8e2b64ee77d0d31e64a901a46b7ce33e52399134
sha512: 34676277b80647ab14f396f432454883c12af1582c65f235659fd9e55a0233a704f8be225a49f81e0b4c0b4f1364a240b4120e5bc69aea32b4c6170912506f4c
ssdeep: 6144:lik8el8FsnwUUYnrgK9g8FNZGxGYyHjG+/eodsS+:AKyGnp0KrvoxzyDG+/Js
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12C448C21BA90C033F55301759979DB6ABA2FB9305B3524C7E3DC0E7D9FA22C1963874A
sha3_384: 30e41b6b74171c06cdbecbacd4e194de2ed7d156f0551c0865cbede06dc031c0c6cabdbe3d908498f0d3f94f671ce6b2
ep_bytes: e8c6640000e995feffff3b0d54b64300
timestamp: 2021-09-08 03:49:55

Version Info:

CompanyName: 重庆珉爵科技中心
FileDescription: ItaStorage
FileVersion: 1.0.0.2
InternalName: Gif
LegalCopyright: Copyright (C) 2021
OriginalFilename: ItaStorageT.exe
ProductName: 联系我们http://show.younoteba.top/feedback/
ProductVersion: 1.0.0.1
Translation: 0x0804 0x04b0

Fugrafa.164258 (B) also known as:

BkavW32.AIDetect.malware2
LionicRiskware.Win32.Fugrafa.1!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Fugrafa.164258
FireEyeGeneric.mg.02de7013423e6df9
CAT-QuickHealPUA.AgentRI.S23757129
McAfeePUP-XQT-OL
CylanceUnsafe
K7AntiVirusAdware ( 00568e221 )
K7GWAdware ( 00568e221 )
Cybereasonmalicious.3423e6
BitDefenderThetaAI:Packer.69FC236620
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Softcnapp.BK potentially unwanted
TrendMicro-HouseCallTROJ_GEN.R002C0PL321
Paloaltogeneric.ml
BitDefenderGen:Variant.Fugrafa.164258
AvastWin32:Adware-gen [Adw]
Ad-AwareGen:Variant.Fugrafa.164258
SophosGeneric PUA IH (PUA)
TrendMicroTROJ_GEN.R002C0PL321
McAfee-GW-EditionPUP-XQT-OL
EmsisoftGen:Variant.Fugrafa.164258 (B)
GDataGen:Variant.Fugrafa.164258
Antiy-AVLTrojan/Generic.ASMalwS.34D5DCF
ArcabitTrojan.Fugrafa.D281A2
MicrosoftTrojan:Win32/Wacatac.A!ml
CynetMalicious (score: 100)
AhnLab-V3PUP/Win32.RL_Generic.R365583
VBA32BScope.Trojan.Sdum
ALYacGen:Variant.Fugrafa.164258
MAXmalware (ai score=85)
MalwarebytesPUP.Optional.Softcnapp
RisingAdware.Agent!1.CE32 (CLASSIC)
YandexRiskware.Agent!MzBhbWNDlpY
FortinetAdware/Softcnapp.BK
AVGWin32:Adware-gen [Adw]

How to remove Fugrafa.164258 (B)?

Fugrafa.164258 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment