Malware

Fugrafa.228980 (B) removal guide

Malware Removal

The Fugrafa.228980 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.228980 (B) virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid

How to determine Fugrafa.228980 (B)?


File Info:

name: 535C60EF280FAD34EC33.mlw
path: /opt/CAPEv2/storage/binaries/588454f02cba40703ed7f6dfe256ecaba3c41bbd80ed1cc0e34ba8d2214c05d0
crc32: 8E1C3364
md5: 535c60ef280fad34ec33178de130e600
sha1: 1d4592750da6e066bd737f9763e839b21515484a
sha256: 588454f02cba40703ed7f6dfe256ecaba3c41bbd80ed1cc0e34ba8d2214c05d0
sha512: 590f72fcb049c2fc027860f641eb86e03be5fc9d418cad8eef1d5e8134ffc4a0f3203b936bec1abef80d7cf997c705000c615da1c70c2d95007dc91048369e02
ssdeep: 384:omrEXqsPqcrftRJtLgwrXjqu64HS48q7JSJn6mdb:oJXEKftR3gwrWL4y4IJTd
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12C724A83BE5088E3CB65417039BBB9A8817BBE350F695AE3ABC14D14453C1E5EC3592F
sha3_384: b88bbba95d01fd715d34f660c44b8e31abfa23ef35bcd9e0a3fc92bbbcf3e9ccc13f65408e58af45a513a74680365a39
ep_bytes: e8ff030000e974feffff558bec6a00ff
timestamp: 2022-01-29 09:15:51

Version Info:

0: [No Data]

Fugrafa.228980 (B) also known as:

MicroWorld-eScanGen:Variant.Fugrafa.228980
FireEyeGen:Variant.Fugrafa.228980
McAfeeRDN/Generic.grp
CylanceUnsafe
SangforTrojan.Win32.Sabsik.FL
K7AntiVirusTrojan ( 0058c8d21 )
AlibabaTrojan:Win32/Rozena.baa5c34b
K7GWTrojan ( 0058c8d21 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Rozena.BGN
APEXMalicious
BitDefenderGen:Variant.Fugrafa.228980
AvastWin32:TrojanX-gen [Trj]
SophosMal/Wintrim-A
F-SecureTrojan.TR/Rozena.aheer
TrendMicroTROJ_GEN.R002C0RB122
McAfee-GW-EditionRDN/Generic.grp
EmsisoftGen:Variant.Fugrafa.228980 (B)
IkarusTrojan.Win32.Swrort
JiangminTrojan.Cobalt.xw
AviraTR/Rozena.aheer
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
GDataWin32.Trojan.PSE.14BHTE2
AhnLab-V3Trojan/Win.VJ.R470016
VBA32Trojan.Agent
ALYacGen:Variant.Fugrafa.228980
MAXmalware (ai score=83)
MalwarebytesTrojan.CobaltStrike
TrendMicro-HouseCallTROJ_GEN.R002C0RB122
RisingTrojan.Rozena!8.6D (CLOUD)
FortinetW32/Rozena.BGN!tr
AVGWin32:TrojanX-gen [Trj]
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Fugrafa.228980 (B)?

Fugrafa.228980 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment