Malware

Should I remove “Fugrafa.228696”?

Malware Removal

The Fugrafa.228696 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.228696 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Presents an Authenticode digital signature
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid

How to determine Fugrafa.228696?


File Info:

name: EA0C67B43FEFEEC2DE29.mlw
path: /opt/CAPEv2/storage/binaries/23084aa205a2a09623752e0fa807c722a9a23c169eb5f7a04fb50a8c4f7a6924
crc32: C5CB5AD8
md5: ea0c67b43fefeec2de29276be024dc48
sha1: 7adafb662c1a20d5c8d8fb816ecfe63a915b7a17
sha256: 23084aa205a2a09623752e0fa807c722a9a23c169eb5f7a04fb50a8c4f7a6924
sha512: 924325c9eb45b25111aa304ee4ad0ac43069694d5d833e15aaa9f4b96e7844b899d84d4a10f2714913168a61a17c7013f40438bfcde31abc839b34e1b49d30c7
ssdeep: 384:dmbUX6jqMLftBJtLgwrXjxu64HS48qupRJn6mdWFFfhDnYDBRJ64ifl2iJnw:dpX56ftB3gwr9L4y42JTdWHpY1P6j3w
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10FB27DC3AF104883CB654470257AF996693F77F20E6496E367C6E8040DAD3C5EE2496F
sha3_384: 6501a1a0260b99e3623d42e75614ff2cf413c31fa51fd2ec8f71efd3149662570773c1b2be7a02320a36db15f9b92aa6
ep_bytes: e8ff030000e974feffff558bec6a00ff
timestamp: 2022-01-29 09:21:56

Version Info:

0: [No Data]

Fugrafa.228696 also known as:

LionicTrojan.Win32.Fugrafa.4!c
CynetMalicious (score: 99)
FireEyeGen:Variant.Fugrafa.228696
ALYacGen:Variant.Fugrafa.228696
CylanceUnsafe
SangforTrojan.Win32.Wacatac.B
K7AntiVirusTrojan ( 0058c8d21 )
AlibabaTrojan:Win32/Rozena.c2d28e5d
K7GWTrojan ( 0058c8d21 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Rozena.BGN
TrendMicro-HouseCallTROJ_GEN.R002C0PB122
AvastWin32:TrojanX-gen [Trj]
BitDefenderGen:Variant.Fugrafa.228696
MicroWorld-eScanGen:Variant.Fugrafa.228696
Ad-AwareGen:Variant.Fugrafa.228696
TrendMicroTROJ_GEN.R002C0PB122
EmsisoftGen:Variant.Fugrafa.228696 (B)
GDataWin32.Trojan.PSE.14BHTE2
JiangminTrojan.Cobalt.xw
AviraTR/Rozena.pegom
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
AhnLab-V3Trojan/Win.Generic.C4948909
McAfeeRDN/Generic.dx
MAXmalware (ai score=80)
MalwarebytesTrojan.CobaltStrike
APEXMalicious
RisingTrojan.Rozena!8.6D (CLOUD)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Rozena.BGN!tr
AVGWin32:TrojanX-gen [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Fugrafa.228696?

Fugrafa.228696 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment