Malware

Fugrafa.5427 (B) removal

Malware Removal

The Fugrafa.5427 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.5427 (B) virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Guard pages use detected – possible anti-debugging.
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Collects information to fingerprint the system

How to determine Fugrafa.5427 (B)?


File Info:

name: FA6A073B6567F7866E3E.mlw
path: /opt/CAPEv2/storage/binaries/c139eb999ccec59b97d610cd8d382b2e763f5be26177464ceb02ad2772048648
crc32: F25A246A
md5: fa6a073b6567f7866e3edfa3559bd4bd
sha1: c0abbd1fd0e3be232f08ae8669b45f2e0a6047ea
sha256: c139eb999ccec59b97d610cd8d382b2e763f5be26177464ceb02ad2772048648
sha512: 4f7ab5e151ece6a8b2a374a76c279e1d87e894f35e324881f88b3e366e2fc6f93e2b1a89a78a8cecab3bd5d6ca0b1f645bb352700bce083417dd26765759127d
ssdeep: 1536:XCdx2F3vG9tPp8EFKAulpGO5WTJuZhzS:XCwUH8EyDi9uZxS
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T134A3B6A23AD98071F2F63C7E3EB697960BFA75424C29494D4EC88644BCE9346C4353E7
sha3_384: 7545f64c0d11d30728fac0bb68c471093c6684f52d43dc47bd6288afc1dde0a6bdba78708427440c06e44cc526e42381
ep_bytes: 558bec6aff6830c24000680023400064
timestamp: 2016-09-30 22:35:49

Version Info:

0: [No Data]

Fugrafa.5427 (B) also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanGen:Variant.Fugrafa.5427
FireEyeGeneric.mg.fa6a073b6567f786
CAT-QuickHealTrojan.Dynamer.20568
ALYacGen:Variant.Fugrafa.5427
CylanceUnsafe
Sangfor[ARMADILLO V1.71]
K7AntiVirusTrojan ( 004f258f1 )
K7GWTrojan ( 004f258f1 )
Cybereasonmalicious.b6567f
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kasidet.AI
APEXMalicious
KasperskyVHO:Trojan-Banker.Win32.Jimmy.gen
BitDefenderGen:Variant.Fugrafa.5427
NANO-AntivirusTrojan.Win32.Kasidet.fbrmgu
AvastSf:ShellCode-V [Trj]
TencentMalware.Win32.Gencirc.10b8729a
Ad-AwareGen:Variant.Fugrafa.5427
EmsisoftGen:Variant.Fugrafa.5427 (B)
DrWebTrojan.Kasidet.8
ZillyaWorm.Kasidet.Win32.254
McAfee-GW-EditionBehavesLike.Win32.Agent.ch
Trapminemalicious.high.ml.score
SophosML/PE-A
IkarusWorm.Win32.Kasidet
GDataGen:Variant.Fugrafa.5427
JiangminTrojan.Banker.Jimmy.el
AviraTR/ATRAPS.Gen
MAXmalware (ai score=86)
ArcabitTrojan.Fugrafa.D1533
ZoneAlarmHEUR:Trojan-Banker.Win32.Jimmy.gen
MicrosoftTrojan:Win32/Carberp.K
CynetMalicious (score: 100)
AhnLab-V3Spyware/Win32.RL_Zbot.R281790
McAfeeGenericRXJH-YE!FA6A073B6567
VBA32TrojanSpy.Zbot
MalwarebytesMalware.AI.4146545070
RisingTrojan.Generic@AI.90 (RDML:/DsHHu2hWaYst6WW1cHpJg)
YandexTrojan.GenAsa!xpNRwAL5VcM
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.HDDV!tr
BitDefenderThetaGen:NN.ZexaF.34742.gqW@auux0Sn
AVGSf:ShellCode-V [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_70% (D)

How to remove Fugrafa.5427 (B)?

Fugrafa.5427 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment