Malware

Fugrafa.295430 removal

Malware Removal

The Fugrafa.295430 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.295430 virus can do?

  • Sample contains Overlay data
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Fugrafa.295430?


File Info:

name: 871AD8C73FCF56EA0CFC.mlw
path: /opt/CAPEv2/storage/binaries/ccf77f5fe9afbad7ff33550ec21190588292e1d5120b5882e1b0b1297266b657
crc32: 8CA321C7
md5: 871ad8c73fcf56ea0cfc4cc58a86e0a3
sha1: dd23f2a9657fc66864cd355e1d6abc3d29150f13
sha256: ccf77f5fe9afbad7ff33550ec21190588292e1d5120b5882e1b0b1297266b657
sha512: a43d48141c202c449c441d81938a52d2f36d2704c3b36213d6de596179a86c8bc35a9a1eb12a0609dba12405ba6fdcb4acf35dc668e08d36b4f319c37f2fa41d
ssdeep: 196608:zDru5+wLXTuq4dbq5cFUUKyGEIo1NhGQqnRglwHn/LP13KDSF7x887gf:/rO+v7qqUryKo1NLqRRHs2BS2o
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T110C6237B12B10144D4F88C348CE6FDD631FA19F68B8598FB64E6B6C827358E59B32583
sha3_384: f8578c78e85fd9a757b379dedd0fd22867aab2057f52af60a260bacff339156a94f8bdf322fe2c00b4cda182a8ad979e
ep_bytes: cccccccccce9f6530000e9a1390000e9
timestamp: 2023-07-27 04:15:20

Version Info:

CompanyName: Shenzhen DJI Technology Co.,Ltd
FileDescription: DJI Assistant 2.exe
FileVersion: 2.0.0.0
InternalName: DJI Assistant 2.exe
LegalCopyright: Copyright (C) 2021
OriginalFilename: DJI Assistant 2.exe
ProductName: DJI Assistant 2
ProductVersion: 2.0.0.0
Translation: 0x0804 0x04b0

Fugrafa.295430 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
FireEyeGeneric.mg.871ad8c73fcf56ea
CrowdStrikewin/malicious_confidence_70% (D)
ESET-NOD32a variant of Win64/Agent_AGen.AVJ
APEXMalicious
BitDefenderGen:Variant.Fugrafa.295430
AvastWin32:Evo-gen [Trj]
EmsisoftGen:Variant.Fugrafa.295430 (B)
VIPREGen:Variant.Fugrafa.295430
SophosGeneric ML PUA (PUA)
GDataGen:Variant.Fugrafa.295430
ArcabitTrojan.Fugrafa.D48206
ALYacGen:Variant.Fugrafa.295430
MAXmalware (ai score=89)
Cylanceunsafe
RisingTrojan.Generic@AI.94 (RDML:klJXkqeGWtKyTZiSEqDjIg)
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.9657fc

How to remove Fugrafa.295430?

Fugrafa.295430 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment