Malware

How to remove “Fugrafa.257045”?

Malware Removal

The Fugrafa.257045 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.257045 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Executed a command line with /C or /R argument to terminate command shell on completion which can be used to hide execution
  • Dynamic (imported) function loading detected
  • Network anomalies occured during the analysis.
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • A ping command was executed with the -n argument possibly to delay analysis
  • Uses Windows utilities for basic functionality
  • Created a process from a suspicious location
  • Uses suspicious command line tools or Windows utilities

How to determine Fugrafa.257045?


File Info:

name: 79D4081FF1A00D3C5BD2.mlw
path: /opt/CAPEv2/storage/binaries/7c2b4b17b4ac39513185a704a03f1a3e5103d466b39989e6da5b3b9a4017ce99
crc32: 7054179B
md5: 79d4081ff1a00d3c5bd28d1804f3961e
sha1: 41a3a77e1fe1b9fc139d02d1d5f2a10e9c711c47
sha256: 7c2b4b17b4ac39513185a704a03f1a3e5103d466b39989e6da5b3b9a4017ce99
sha512: e0dabda1f02a8ed97a8b3e78d4a938e16ff22851ede5ffb5ef5373e136a9d91a9069f5b6cac4d58a419f96a3feb5b12157a6ae8ea08e6ea33a50babe8a3442a1
ssdeep: 768:asZdqNb4s9xjXvKBBW5bqYPeTuUche5Y:alDjSBBWUYbsY
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T12CC29E07F7A0CB21DE7445F2A4F17AB447FE7920AD6986329F00ED711A553A0E91B8CA
sha3_384: 10014e6e82bc255572ac4ae0ce97c51b137315683e73887603b1fe9be3ff507a95b115d8e139b53d4d928beee9391df4
ep_bytes: e8b1020000e974feffff558becff7508
timestamp: 2020-12-13 23:46:04

Version Info:

0: [No Data]

Fugrafa.257045 also known as:

MicroWorld-eScanGen:Variant.Fugrafa.257045
ALYacGen:Variant.Fugrafa.257045
CylanceUnsafe
K7AntiVirusPassword-Stealer ( 005937271 )
K7GWPassword-Stealer ( 005937271 )
Cybereasonmalicious.ff1a00
CyrenW32/Agent.ENB.gen!Eldorado
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/PSW.Agent.OOO
ClamAVWin.Malware.Fugrafa-9950512-0
KasperskyHEUR:Trojan.Win32.SelfDel.vho
BitDefenderGen:Variant.Fugrafa.257045
AvastWin32:Malware-gen
TencentTrojan.Win32.Selfdel.xb
Ad-AwareGen:Variant.Fugrafa.257045
EmsisoftGen:Variant.Fugrafa.257045 (B)
ZillyaTrojan.SelfDel.Win32.65008
McAfee-GW-EditionGenericRXNV-VM!79D4081FF1A0
FireEyeGeneric.mg.79d4081ff1a00d3c
SophosTroj/PWS-CMJ
IkarusTrojan.DelFiles
GDataGen:Variant.Fugrafa.257045
JiangminTrojan.Selfdel.rft
AviraHEUR/AGEN.1234650
ArcabitTrojan.Fugrafa.D3EC15
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 99)
AhnLab-V3Malware/Win.Reputation.R496203
Acronissuspicious
McAfeeGenericRXNV-VM!79D4081FF1A0
VBA32BScope.Trojan.Occamy
MalwarebytesMalware.AI.2397151589
APEXMalicious
RisingTrojan.PSW!1.DE3E (CLASSIC)
MAXmalware (ai score=89)
MaxSecureTrojan.Malware.5437263.susgen
FortinetW32/SelfDef.26C0!tr
AVGWin32:Malware-gen
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_60% (D)

How to remove Fugrafa.257045?

Fugrafa.257045 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment