Malware

What is “Fugrafa.58051”?

Malware Removal

The Fugrafa.58051 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.58051 virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking
  • Tries to unhook or modify Windows functions monitored by Cuckoo
  • Anomalous binary characteristics

How to determine Fugrafa.58051?


File Info:

crc32: F39068BF
md5: b729d484d7ffc77c5996b9bdf09589a9
name: B729D484D7FFC77C5996B9BDF09589A9.mlw
sha1: 84beb5b07da456dc1d3a1fb349f3696cb70628fb
sha256: 7fcac670ce4ba5bfc5d64d8d43a2f471ae3b7297d9b328a4b0ca22b3dbfc3ab0
sha512: 89a3334bab0be8b98c669a923ae4ec5c20e47069b13d1a9e2edae28136e3e791d1dd2a81218f59e18b44b981f0295738424dddfa8bdbd9fb2d2fba4d7c9f239d
ssdeep: 6144:/F2kyw2a7mPnZmgawu7SzctqzhVsanFft9Y5hclqbEi1Awvnp1pnKKSguioWQfB:doC2ZmjwhvtftO5hcl3iRvp1pnKMWB
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: K Software
InternalName:
FileVersion: 1.0.0.0
CompanyName: K Software
LegalTrademarks:
Comments:
ProductName: kSign
ProductVersion: 1.0.0.0
FileDescription: kSign - The Easy Code Signing Utility
OriginalFilename:
Translation: 0x0409 0x04e4

Fugrafa.58051 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0051d0421 )
DrWebTrojan.PWS.Panda.10359
CynetMalicious (score: 100)
ALYacGen:Variant.Fugrafa.58051
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
K7GWTrojan ( 0051d0421 )
Cybereasonmalicious.4d7ffc
CyrenW32/S-8ccb4e63!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.EZJT
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Ransomware.Fugrafa-9779211-0
KasperskyTrojan-Ransom.Win32.Foreign.ntpd
BitDefenderGen:Variant.Fugrafa.58051
NANO-AntivirusTrojan.Win32.Zbot.evczvm
MicroWorld-eScanGen:Variant.Fugrafa.58051
TencentMalware.Win32.Gencirc.11494c73
Ad-AwareGen:Variant.Fugrafa.58051
SophosML/PE-A + Mal/Ransom-EE
ComodoMalware@#3qlsqg8tgddin
BitDefenderThetaGen:NN.ZexaF.34628.Du1@aKPZ6bni
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericRXAI-FY!B729D484D7FF
FireEyeGeneric.mg.b729d484d7ffc77c
EmsisoftGen:Variant.Fugrafa.58051 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1112598
eGambitUnsafe.AI_Score_95%
MicrosoftPWS:Win32/Zbot
ArcabitTrojan.Fugrafa.DE2C3
AegisLabTrojan.Win32.Generic.4!c
GDataGen:Variant.Fugrafa.58051
AhnLab-V3Trojan/Win32.Zbot.C2270392
Acronissuspicious
McAfeeGenericRXAI-FY!B729D484D7FF
MAXmalware (ai score=99)
VBA32Trojan-Ransom.Foreign
MalwarebytesTrojan.Zbot
PandaTrj/GdSda.A
RisingRansom.Foreign!8.292 (CLOUD)
IkarusTrojan-Ransom.Foreign
FortinetW32/Kryptik.FCAB!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Backdoor.Zbot.J

How to remove Fugrafa.58051?

Fugrafa.58051 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment