Malware

Fugrafa.38944 removal guide

Malware Removal

The Fugrafa.38944 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.38944 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • Uses Windows utilities for basic functionality
  • Attempts to delete volume shadow copies
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Exhibits behavior characteristic of Cerber ransomware
  • Anomalous binary characteristics

How to determine Fugrafa.38944?


File Info:

crc32: 729D5C43
md5: 58078ba2941f787afdf1277bcb73e10d
name: 58078BA2941F787AFDF1277BCB73E10D.mlw
sha1: 2581dc9709fb265c4cb175ca9ed0303fe2191db0
sha256: 91d184a2a873db8c90955bf37d237d440d44d1947654dbccb753a22f1587b35b
sha512: b56e8bda1d90276e5e12ba8312ae7aed9e7dd739c44a799ac4e5d3cb7f667d14852e3bd19a7616ee0af728d9b543cec7d46a5c6ea95b45a10b8d04612bcbac92
ssdeep: 6144:c8Ep5LI3IUtREC8gqd00YpTicEDjKBQfKJwa8rrpF62x8mcnE:cpNUtkhswjKBQfNjPmRE
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 Untin Wis
InternalName: trochoids
FileVersion: 4.10.1514.47251
CompanyName: Untin Wis
ProductName: trochoids fogbound
ProductVersion: 4.10.1514.47251
FileDescription: trochoids kirkuk
OriginalFilename: trochoids.exe
Translation: 0x0409 0x04b0

Fugrafa.38944 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0055dd191 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.6079
CynetMalicious (score: 100)
McAfeeRansomware-FSF!58078BA2941F
CylanceUnsafe
ZillyaTrojan.Zerber.Win32.344
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Kryptik.74e0ad68
K7GWTrojan ( 0055dd191 )
Cybereasonmalicious.2941f7
CyrenW32/Cerber.XCDV-6182
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.FFME
APEXMalicious
AvastWin32:Trojan-gen
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Fugrafa.38944
NANO-AntivirusTrojan.Win32.Encoder.erpwmr
MicroWorld-eScanGen:Variant.Fugrafa.38944
TencentMalware.Win32.Gencirc.10bd77ab
Ad-AwareGen:Variant.Fugrafa.38944
SophosMal/Generic-S
ComodoMalware@#1v54zvmxjbuou
BitDefenderThetaAI:Packer.4DCA0D0921
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_CERBER.F116I2
McAfee-GW-EditionRansomware-FSF!58078BA2941F
FireEyeGeneric.mg.58078ba2941f787a
EmsisoftGen:Variant.Fugrafa.38944 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Zerber.uh
AviraHEUR/AGEN.1121409
eGambitUnsafe.AI_Score_98%
MicrosoftTrojan:Win32/Dynamer!ac
AegisLabTrojan.Win32.Zerber.j!c
GDataGen:Variant.Fugrafa.38944
TACHYONRansom/W32.Cerber.569410
AhnLab-V3Trojan/Win32.Zerber.C1544009
Acronissuspicious
VBA32Trojan.Encoder
MAXmalware (ai score=88)
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_CERBER.F116I2
RisingRansom.Cerber!8.3058 (CLOUD)
IkarusTrojan.Win32.Crypt
FortinetW32/Kryptik.EYKI!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Generic.HxQB8PsA

How to remove Fugrafa.38944?

Fugrafa.38944 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment