Malware

Fugrafa.228980 malicious file

Malware Removal

The Fugrafa.228980 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.228980 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid

How to determine Fugrafa.228980?


File Info:

name: 55555B0D906C471D4422.mlw
path: /opt/CAPEv2/storage/binaries/2cfdacdc363ddf146d59add3bf49b49a29df951ff3be4bf35e70c2125b2751d1
crc32: 8D6BECD4
md5: 55555b0d906c471d44229b94599d8ce0
sha1: 04837fff49453d9dd79717bfc6b6e9a530485888
sha256: 2cfdacdc363ddf146d59add3bf49b49a29df951ff3be4bf35e70c2125b2751d1
sha512: 0f17fffc5a8c94a3f95515c19e76ba83ad885a1048bd661e88f3e116246e8d9817de12308abf27d6eca67762980f293e015571a53f4a892ef6eb3616f1fa6b51
ssdeep: 384:ymrEXqsPqcrftRJtLgwrXjqu64HS48qf9TgeJSJn6mdb:yJXEKftR3gwrWL4y4v9TgtJTd
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CB724B83BE5088E3CB64417039BBB9A8817BBE350FA95AE3A7C54D14453C1E5EC3592F
sha3_384: e2fcc774abd3eaa04e30b6869fcc592a19bca13f35d15e7a421f04f022275798751bfdbcd17991563b86faf8f65e9572
ep_bytes: e8ff030000e974feffff558bec6a00ff
timestamp: 2022-01-29 09:03:24

Version Info:

0: [No Data]

Fugrafa.228980 also known as:

LionicTrojan.Win32.Agent.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGen:Variant.Fugrafa.228980
McAfeeRDN/Generic.dx
CylanceUnsafe
SangforSuspicious.Win32.Fugrafa.228980
K7AntiVirusTrojan ( 0058c8d21 )
AlibabaTrojan:Win32/Rozena.bf99aa10
K7GWTrojan ( 0058c8d21 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Rozena.BGN
APEXMalicious
BitDefenderGen:Variant.Fugrafa.228980
MicroWorld-eScanGen:Variant.Fugrafa.228980
AvastWin32:TrojanX-gen [Trj]
EmsisoftGen:Variant.Fugrafa.228980 (B)
TrendMicroTROJ_GEN.R002C0PB122
McAfee-GW-EditionRDN/Generic.dx
SophosMal/Wintrim-A
JiangminTrojan.Cobalt.xw
AviraTR/Rozena.ospvy
MAXmalware (ai score=84)
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
GDataWin32.Trojan.PSE.14BHTE2
AhnLab-V3Trojan/Win.VJ.R470016
ALYacGen:Variant.Fugrafa.228980
VBA32Trojan.Agent
MalwarebytesTrojan.CobaltStrike
TrendMicro-HouseCallTROJ_GEN.R002C0PB122
RisingTrojan.Rozena!8.6D (CLOUD)
IkarusTrojan.Win32.Swrort
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Rozena.BGN!tr
AVGWin32:TrojanX-gen [Trj]
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Fugrafa.228980?

Fugrafa.228980 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment