Malware

What is “Fugrafa.35739”?

Malware Removal

The Fugrafa.35739 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.35739 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

How to determine Fugrafa.35739?


File Info:

crc32: D4C64068
md5: a1c1d3d43ed13215926c216d0d9d6975
name: A1C1D3D43ED13215926C216D0D9D6975.mlw
sha1: 30819174b2676cd0222c901afaa381f163b50e7d
sha256: 2c9a94f95bed1884e6d634a5243b07d643af112b7689dcef0456de1f0927a414
sha512: 1d92cd50e0e83bdae73411c98a7e98ed6b34842cd276bd93cfc3a7c6beb19fbe6e127a78402eaad031bb9448286b858104f9ac457db0f4e8c823a452ea8acc88
ssdeep: 24576:FS8hmC9WEYPXDnLXy8TEK36Ca1Doyuq0XRB3m:FSs9WEQTbTKP1symz2
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyright (c) 2006-2014 Henry++
InternalName: Alchemy
FileVersion: 8.4.7.9
CompanyName: Henry++
LegalTrademarks: Copyright (c) 2006-2014 Henry++
ProductName: Alchemy
Languages: English
ProductVersion: 8.4.7.9
FileDescription: Myriad Lfap
OriginalFilename: Alchemy.exe
Translation: 0x0409 0x04b0

Fugrafa.35739 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Fugrafa.35739
SangforTrojan.Win32.Crypt.Agent
CrowdStrikewin/malicious_confidence_60% (D)
Cybereasonmalicious.43ed13
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GIOG
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan.Win32.Yakes.wsjh
BitDefenderGen:Variant.Fugrafa.35739
NANO-AntivirusTrojan.Win32.Yakes.ffezop
MicroWorld-eScanGen:Variant.Fugrafa.35739
TencentWin32.Trojan.Yakes.Lmkf
Ad-AwareGen:Variant.Fugrafa.35739
SophosMal/Generic-S
ComodoMalware@#1m76l08nyycuu
BitDefenderThetaGen:NN.ZexaCO.34170.6mKfaafnQmli
McAfee-GW-EditionBehavesLike.Win32.Dropper.dc
FireEyeGeneric.mg.a1c1d3d43ed13215
EmsisoftGen:Variant.Fugrafa.35739 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1115366
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Fugrafa.35739
AhnLab-V3Malware/Win32.Generic.C2642656
Acronissuspicious
McAfeeArtemis!A1C1D3D43ED1
MAXmalware (ai score=86)
PandaTrj/CI.A
YandexTrojan.Yakes!7d4rJ4VOFLY
IkarusTrojan-Ransom.GandCrab
FortinetW32/Yakes.GIOG!tr
AVGWin32:Malware-gen

How to remove Fugrafa.35739?

Fugrafa.35739 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment