Malware

Should I remove “Fugrafa.43368”?

Malware Removal

The Fugrafa.43368 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.43368 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Expresses interest in specific running processes
  • Reads data out of its own binary image
  • Performs some HTTP requests
  • Checks for the presence of known windows from debuggers and forensic tools
  • Collects information about installed applications
  • Network activity detected but not expressed in API logs
  • Checks for the presence of known devices from debuggers and forensic tools
  • Detects VirtualBox through the presence of a device
  • Anomalous binary characteristics

Related domains:

redirector.gvt1.com
r8—sn-bpb5oxu-3c2r.gvt1.com

How to determine Fugrafa.43368?


File Info:

crc32: DC9B1697
md5: 08cfaf120cd12bafe53c2fbb50c204b1
name: 08CFAF120CD12BAFE53C2FBB50C204B1.mlw
sha1: 5279ce82ca511711fdc45e85421ec392ea86c5f8
sha256: 807d1394a104671b9826aef653b595f7f2c29269faf12228c981f2005094379f
sha512: ae1b2af4fdb4c9e105ca5b9417a0107cff4228534d722b64d41ae39ec40e568f1fca99872d015d57eeb6fffaad3b56083b266780735f11e05ac97ed028a8f417
ssdeep: 24576:T3LSgb4mRT8WwY7/lyAsC4TY/UWR4sI3Q9Tz:TuA4s8WwKtpJbqA
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

ProductName: EaseUS_TodoBackup
ProgramID: com.embarcadero.EaseUS_TodoBackup
FileDescription: EaseUS_TodoBackup
FileVersion: 2.0.0.0
ProductVersion: 1.0.0.0
Translation: 0x0409 0x04e4

Fugrafa.43368 also known as:

K7AntiVirusRiskware ( 0040eff71 )
CynetMalicious (score: 90)
CAT-QuickHealTrojan.Generic
ALYacGen:Variant.Fugrafa.43368
CylanceUnsafe
SangforMalware
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Generic.f5c95fc5
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.20cd12
CyrenW32/Trojan.RBJI-1418
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.Obsidium.BZ
APEXMalicious
AvastWin32:Malware-gen
BitDefenderGen:Variant.Fugrafa.43368
NANO-AntivirusTrojan.Win32.Fugrafa.idbstb
ViRobotTrojan.Win32.Z.Wacatac.1718704
MicroWorld-eScanGen:Variant.Fugrafa.43368
TencentWin32.Trojan.Generic.Hpn
Ad-AwareGen:Variant.Fugrafa.43368
SophosMal/Generic-S
ComodoMalware@#10t9pfdcd3jf9
F-SecureHeuristic.HEUR/AGEN.1128024
BitDefenderThetaAI:Packer.3DE32D961F
VIPRETrojan.Win32.Generic!BT
TrendMicroPUA.Win32.Activator.C
McAfee-GW-EditionBehavesLike.Win32.Ardurk.tc
FireEyeGeneric.mg.08cfaf120cd12baf
EmsisoftGen:Variant.Fugrafa.43368 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Generic.frcnt
WebrootW32.Malware.Gen
AviraHEUR/AGEN.1128024
Antiy-AVLTrojan/Win32.Generic
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftHackTool:Win32/Keygen!MSR
GridinsoftTrojan.Win32.Agent.dg
ArcabitTrojan.Fugrafa.DA968
AegisLabTrojan.Win32.Fugrafa.4!c
GDataGen:Variant.Fugrafa.43368
McAfeeGenericRXLT-RA!08CFAF120CD1
MAXmalware (ai score=86)
VBA32TScope.Malware-Cryptor.SB
MalwarebytesMalware.AI.3142163143
PandaGeneric Suspicious
TrendMicro-HouseCallPUA.Win32.Activator.C
RisingTrojan.Apost!8.E271 (TFE:1:1aubbUNtAYO)
IkarusTrojan.Win32.Obsidium
FortinetW32/Generic!tr
AVGWin32:Malware-gen
Qihoo-360Generic/Trojan.845

How to remove Fugrafa.43368?

Fugrafa.43368 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment