Malware

Fugrafa.6351 removal tips

Malware Removal

The Fugrafa.6351 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.6351 virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Unconventionial binary language: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Fugrafa.6351?


File Info:

name: 7FE23E960414783D3200.mlw
path: /opt/CAPEv2/storage/binaries/f660fad54c38db25caa9a5b3b005918c0ccd3d77e6f9e5ba1a37f915e3f9a22a
crc32: 85697FFC
md5: 7fe23e960414783d32003c6488cbae77
sha1: e747c4faa4fb4a4e4e2b193762dbd95f95f19380
sha256: f660fad54c38db25caa9a5b3b005918c0ccd3d77e6f9e5ba1a37f915e3f9a22a
sha512: 3b4c9717973582c8d0748ab5d89490794678bf94f4cebfb800b07b6957faac0e384930c7d4937266ee52b86ef2c1c95b142220c5377453173424e327bdba4196
ssdeep: 24576:/nf7RG1BpRK8tYgWYOkNE8KjRwNhAPUBohqRabU+DRZdC/hR:/n9kpgF3tRwNaPUaQ+Dz
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15895D122F7928437D1332A7C4C3B9394946EBE201D39A4477AE61E4C9F786C5392E2D7
sha3_384: 36e76a1cfcdad00ad44fdccde0c6d09035a84464ac9d92240ad0647b69c83f4a0fc1e948b09e8364fea448ccec46e02c
ep_bytes: 558becb9080000006a006a004975f9b8
timestamp: 2020-09-05 19:28:58

Version Info:

CompanyName: 761魔域登录器
FileDescription: 商业程序
InternalName: mydlq.exe
LegalCopyright: 版权所有 (C) 2010
OriginalFilename: LoginTools.exe
ProductName: 商业程序
ProductVersion: 1, 0, 0, 0
FileVersion: 1,0,0,0
Translation: 0x0804 0x03a8

Fugrafa.6351 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Fugrafa.4!c
MicroWorld-eScanGen:Variant.Fugrafa.6351
ClamAVWin.Malware.Bulz-9957991-0
FireEyeGeneric.mg.7fe23e960414783d
CAT-QuickHealPUA.IgenericIH.S28654578
McAfeeGenericRXGA-BH!7FE23E960414
CylanceUnsafe
VIPREGen:Variant.Fugrafa.6351
SangforSuspicious.Win32.Save.ins
K7AntiVirusRiskware ( 0054406b1 )
AlibabaMalware:Win32/km_2ebce5.None
K7GWRiskware ( 0054406b1 )
Cybereasonmalicious.604147
CyrenW32/Fugrafa.AD.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/RiskWare.GameTool.T
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
BitDefenderGen:Variant.Fugrafa.6351
NANO-AntivirusTrojan.Win32.Hosts.ihshyl
AvastFileRepPup [PUP]
TencentRiskware.Win32.Gametool.16000348
Ad-AwareGen:Variant.Fugrafa.6351
EmsisoftGen:Variant.Fugrafa.6351 (B)
DrWebTrojan.Hosts.48206
ZillyaTool.GameTool.Win32.1191
TrendMicroTROJ_GEN.R011C0PK122
McAfee-GW-EditionBehavesLike.Win32.Dropper.tm
Trapminemalicious.high.ml.score
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE1.SE5P2E
AviraHEUR/AGEN.1214757
MAXmalware (ai score=86)
Antiy-AVLTrojan/Generic.ASMalwS.5150
ArcabitTrojan.Fugrafa.D18CF
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GoogleDetected
AhnLab-V3Unwanted/Win32.RL_GameHack.R368480
Acronissuspicious
BitDefenderThetaAI:Packer.C6B1A80219
ALYacGen:Variant.Fugrafa.6351
VBA32TScope.Trojan.Delf
MalwarebytesMalware.AI.2153875250
TrendMicro-HouseCallTROJ_GEN.R011C0PK122
RisingMalware.Lmir!8.E96A (TFE:4:R81oTA2OgLH)
YandexRiskWare.GameTool!7bLD9XIT1Jo
IkarusTrojan-Spy.Lmir
MaxSecureTrojan.Malware.74776291.susgen
FortinetW32/Lmir.BQT!tr
AVGFileRepPup [PUP]
PandaTrj/Genetic.gen

How to remove Fugrafa.6351?

Fugrafa.6351 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment