Malware

About “Fugrafa.270730” infection

Malware Removal

The Fugrafa.270730 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.270730 virus can do?

  • Unconventionial language used in binary resources: Turkish
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • CAPE detected the embedded win api malware family
  • Creates a copy of itself
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Fugrafa.270730?


File Info:

name: 2132676C4EA7D6317DC0.mlw
path: /opt/CAPEv2/storage/binaries/6a21e9c3da8a66fd2fc40eb1a1d5c757eb36ec8b019ce84179c5d6c8d5c2a7e2
crc32: 6757D066
md5: 2132676c4ea7d6317dc0c5e0f1316bfb
sha1: 6baff84ee63a61af223eb6faa0953515baf2762f
sha256: 6a21e9c3da8a66fd2fc40eb1a1d5c757eb36ec8b019ce84179c5d6c8d5c2a7e2
sha512: 1e98a75607239ec20e8afa74721c75a75f23bae349376a292ac5358c447e587e9e0ce8e0c74351908d258d82740ecc4e6dfba979d48d7319f89745928cdc3eb6
ssdeep: 768:qa/1C0gqdSgQ53CMABxuoqHORGqvex40rX+YRkbQ8:b/k1qYgQViBbCOwqvODr+3
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11CD39D03F7D69872D042D9FD4D1BC17AD67332B06D682252B6FB0E8ECED53452A1C586
sha3_384: f320072c661b9647c85834660e8d822451b9ac36063b515fe02dbbed357e731d0ea6c92ed878f2401dd6cab55c9c0fb4
ep_bytes: 558becb90a0000006a006a004975f951
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Fugrafa.270730 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Xtreme.meEN
MicroWorld-eScanGen:Variant.Fugrafa.270730
FireEyeGeneric.mg.2132676c4ea7d631
SkyhighBehavesLike.Win32.Dropper.cz
McAfeeW32/Niklas.worm!p2p
MalwarebytesMalware.Heuristic.2047
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (D)
K7GWTrojan ( 004bcce41 )
K7AntiVirusTrojan ( 004bcce41 )
BitDefenderThetaGen:NN.ZelphiF.36802.imW@aueTrAjG
SymantecW32.HLLP.Melder
Elasticmalicious (moderate confidence)
ESET-NOD32Win32/MScr.M
APEXMalicious
AvastWin32:Niklas-E [Wrm]
KasperskyP2P-Worm.Win32.Niklas.m
BitDefenderGen:Variant.Fugrafa.270730
NANO-AntivirusTrojan.Win32.Niklas.fwjs
TencentMalware.Win32.Gencirc.11bdc6b2
EmsisoftGen:Variant.Fugrafa.270730 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebWin32.HLLW.Niklaus.13
VIPREGen:Variant.Fugrafa.270730
Trapminemalicious.high.ml.score
SophosMal/Generic-R
SentinelOneStatic AI – Malicious PE
JiangminWorm/P2P.Niklas.m
GoogleDetected
AviraTR/Crypt.XPACK.Gen
Antiy-AVLWorm[P2P]/Win32.Niklas
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/Caynamer.A!ml
XcitiumWorm.Win32.MScr.M@4hn5
ArcabitTrojan.Fugrafa.D4218A
ZoneAlarmP2P-Worm.Win32.Niklas.m
GDataGen:Variant.Fugrafa.270730
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Bifrose.C6901
Acronissuspicious
VBA32Worm.Niklas
ALYacGen:Variant.Fugrafa.270730
MAXmalware (ai score=83)
Cylanceunsafe
PandaTrj/CI.A
RisingWorm.Niklas!8.311C (TFE:4:1ubYBKdmHTG)
YandexTrojan.GenAsa!4gLhscg/63A
IkarusTrojan-Dropper.Delf
FortinetW32/Niklas.M!worm.p2p
AVGWin32:Niklas-E [Wrm]
Cybereasonmalicious.c4ea7d
DeepInstinctMALICIOUS
alibabacloudWorm[p2p]:Win/MScr.M

How to remove Fugrafa.270730?

Fugrafa.270730 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment