Malware

Fugrafa.228696 (B) removal instruction

Malware Removal

The Fugrafa.228696 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.228696 (B) virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Presents an Authenticode digital signature
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid

How to determine Fugrafa.228696 (B)?


File Info:

name: 3FE22A7E3B11E06D194C.mlw
path: /opt/CAPEv2/storage/binaries/61f47f9b7f68ac996bc3a56c16f7dd4aedbeba6a5d7b46e8406505fc6903524c
crc32: 8C629D96
md5: 3fe22a7e3b11e06d194cf075ec1fe8bb
sha1: d1ab04343c4a5f7a77f14accea9257070d871f4d
sha256: 61f47f9b7f68ac996bc3a56c16f7dd4aedbeba6a5d7b46e8406505fc6903524c
sha512: 4aed2ef595c9e7a5619a3cb8adf8641ac826a082f3d8a31d5558438a563e3316373bacdc016478d80d0077408a156e325cafb9abd014400d2aa316e76d68ff2c
ssdeep: 384:5mbUX6jqMLftBJtLgwrXjxu6fHi4XLIpRJn6mdWFFfhDnYDBRJ64ifl2iJnw:5pX56ftB3gwr9LfCeMJTdWHpY1P6j3w
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T183B27DC3AF504883CB6545702676F996A83EB7F20F6156E363D6E8040DAD3C1EE2496F
sha3_384: fb0bced63ef92e8230ba07f3d00752e8b7469c43b3b6a21804d55afa4edc5dc8c552f019b34eb1d0fa35d315dfb52c03
ep_bytes: e8ff030000e974feffff558bec6a00ff
timestamp: 2022-01-29 09:33:14

Version Info:

0: [No Data]

Fugrafa.228696 (B) also known as:

LionicTrojan.Win32.Rozena.4!c
MicroWorld-eScanGen:Variant.Fugrafa.228696
FireEyeGen:Variant.Fugrafa.228696
CylanceUnsafe
SangforTrojan.Win32.PSE.14BHTE2
K7AntiVirusTrojan ( 0058c8d21 )
AlibabaTrojan:Win32/Rozena.c2d28e5d
K7GWTrojan ( 0058c8d21 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Rozena.BGN
TrendMicro-HouseCallTROJ_GEN.R002C0PB122
BitDefenderGen:Variant.Fugrafa.228696
AvastWin32:TrojanX-gen [Trj]
EmsisoftGen:Variant.Fugrafa.228696 (B)
TrendMicroTROJ_GEN.R002C0PB122
McAfee-GW-EditionRDN/Generic.dx
SophosMal/Generic-R + Mal/Wintrim-A
APEXMalicious
JiangminTrojan.Cobalt.xw
AviraTR/Rozena.ujeup
MAXmalware (ai score=81)
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataWin32.Trojan.PSE.14BHTE2
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win.Generic.C4948909
MalwarebytesTrojan.CobaltStrike
RisingTrojan.Rozena!8.6D (CLOUD)
IkarusTrojan.Win32.Swrort
FortinetW32/Rozena.BGN!tr
AVGWin32:TrojanX-gen [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Fugrafa.228696 (B)?

Fugrafa.228696 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment