Malware

Fugrafa.64458 (file analysis)

Malware Removal

The Fugrafa.64458 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.64458 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Anomalous binary characteristics

How to determine Fugrafa.64458?


File Info:

name: 414EE27298FF378FC363.mlw
path: /opt/CAPEv2/storage/binaries/7d618e8082f80a42869c4c6d162202542c0d8641ce60ee2b66b896c1c019685e
crc32: 56E3D37B
md5: 414ee27298ff378fc363db2c25bc0efa
sha1: c0295a8c860d8ad153bfbacd07498adb93d5d667
sha256: 7d618e8082f80a42869c4c6d162202542c0d8641ce60ee2b66b896c1c019685e
sha512: 486ac02b081197f28d7a759cf60457aa620ad8e6b706f0081d307eb124d5f9278eda40ecab15929db4ec813e0d512a516b2a94f113651250ae2ba8041040548a
ssdeep: 192:svxJqAPhpeS1ZK4O3CDHp1QyJXzMYu+KYp5U4ubvRxK:SUAPk21QGMn+KYpu4uFQ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10C32D900BC419A24E5E384B84571D396F86D2E340769A5E353F3BC879CB96D1333CA5B
sha3_384: 014997a2eb37bc0b74bdf8f01a9121ecd1fc492962ea4759fb9ffc6b9160294dacfe1cb564666ad36d38c98e7d13dff7
ep_bytes: 558bec68f0134000e8d3ffffff83c404
timestamp: 1970-02-28 08:40:29

Version Info:

0: [No Data]

Fugrafa.64458 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Vtflooder.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Fugrafa.64458
ClamAVWin.Malware.Vtflooder-9783271-0
FireEyeGeneric.mg.414ee27298ff378f
SkyhighBehavesLike.Win32.Ursnif.lt
McAfeeGenericRXGG-SY!414EE27298FF
Cylanceunsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Vtflooder.493
K7GWTrojan ( 005a74e21 )
K7AntiVirusTrojan ( 005a74e21 )
BitDefenderThetaGen:NN.ZexaF.36744.amW@aG@zXQd
SymantecDownloader.Upatre
tehtrisGeneric.Malware
ESET-NOD32Win32/TrojanClicker.Tiny.NAM
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Vtflooder.cft
BitDefenderGen:Variant.Fugrafa.64458
NANO-AntivirusTrojan.Win32.Crypted.dbpklq
SUPERAntiSpywareTrojan.Agent/Gen-Vtflooder
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.VtFlooder.a
TACHYONTrojan/W32.Vtflooder.11776
EmsisoftGen:Variant.Fugrafa.64458 (B)
BaiduWin32.Trojan-Downloader.Tiny.c
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.Flood.22062
ZillyaTrojan.Vtflooder.Win32.915
TrendMicroTrojan.Win32.VFLOODER.SM
Trapminemalicious.high.ml.score
SophosTroj/Agent-AHNL
IkarusTrojan.Win32.TrojanClicker
GDataWin32.Trojan.PSE.16MMF44
JiangminTrojan/Badur.cky
VaristW32/Agent.CFW.gen!Eldorado
AviraTR/Crypt.XPACK.Gen
Antiy-AVLVirus/Win32.Expiro.imp
Kingsoftmalware.kb.b.999
XcitiumTrojWare.Win32.TrojanDownloader.Tiny.N@7sc62q
ArcabitTrojan.Fugrafa.DFBCA
ZoneAlarmTrojan.Win32.Vtflooder.cft
MicrosoftTrojan:Win32/Vflooder.B
GoogleDetected
AhnLab-V3Trojan/Win32.RL_Vtflooder.R273172
Acronissuspicious
ALYacGen:Variant.Fugrafa.64458
MAXmalware (ai score=86)
VBA32Trojan.Badur
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallTrojan.Win32.VFLOODER.SM
RisingTrojan.Vflooder!1.A171 (CLASSIC)
YandexTrojan.GenAsa!e3kPB2anLrw
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Badur.ilcp
FortinetW32/Agent.D382!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.c860d8
DeepInstinctMALICIOUS

How to remove Fugrafa.64458?

Fugrafa.64458 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment