Malware

Fugrafa.80947 information

Malware Removal

The Fugrafa.80947 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.80947 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Network activity detected but not expressed in API logs

Related domains:

wpad.local-net

How to determine Fugrafa.80947?


File Info:

name: E7AEDEF5334C168143D2.mlw
path: /opt/CAPEv2/storage/binaries/c2b8280b1827813b2a6747c7b92c0e339a83b805b5983a8b3418a44bf91607af
crc32: E7953C68
md5: e7aedef5334c168143d2db023e23bacf
sha1: fb91cee8a6340ce04c2e07459ffe89ff4c9267d2
sha256: c2b8280b1827813b2a6747c7b92c0e339a83b805b5983a8b3418a44bf91607af
sha512: d9d8d180a9768d19416ec7f90bf28fae607723ff047f68c6867ba17be32058e93d4ad257fa60affc87209c7f612bcb1e36cdc1de51c240be88b20a6438dd1b97
ssdeep: 24576:+PqUMVz0344gbd3PUQpHIzu6XLxB03idD9Mlf9QfHqVktsL8QEdEt66y6mEKho/D:weVF/iaKLxA7lCOkt68NdjhM/
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T122357D8AF7E242E2E5C7117511B7637ADE316B01833899D3D3802E4999325D1AB3F3AD
sha3_384: 3b131bff251a343f65ce45bc2a9f48f825319f3f584cc962843b80957a4d1ca7f80cd2869d36f2729b51b39825b990ee
ep_bytes: 68a001000068000000006854a85100e8
timestamp: 2018-11-26 20:39:59

Version Info:

CompanyName: Jean-François Ribier
ProductName: Logiciels
ProductVersion: 6.18.11.382
FileDescription: Logiciels
OriginalFilename: Logiciels.pb
LegalCopyright: (c) Jean-François RIBIER
Email: ribier55000@gmail.com
Translation: 0x040c 0x04b0

Fugrafa.80947 also known as:

LionicTrojan.Win32.Fugrafa.4!c
MicroWorld-eScanGen:Variant.Fugrafa.80947
FireEyeGen:Variant.Fugrafa.80947
ALYacGen:Variant.Fugrafa.80947
CylanceUnsafe
SangforTrojan.Win32.Zpevdo.A
CyrenW32/FakeAlert.TD.gen!Eldorado
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_GEN.R002C0PH621
BitDefenderGen:Variant.Fugrafa.80947
AvastWin32:TrojanX-gen [Trj]
Ad-AwareGen:Variant.Fugrafa.80947
EmsisoftGen:Variant.Fugrafa.80947 (B)
VIPRETrojan.FakeAlert
TrendMicroTROJ_GEN.R002C0PH621
McAfee-GW-EditionBehavesLike.Win32.Dropper.th
SophosGeneric PUA PL (PUA)
APEXMalicious
GDataGen:Variant.Fugrafa.80947
MicrosoftTrojan:Win32/Wacatac.B!ml
McAfeeGenericR-OFR!E7AEDEF5334C
VBA32BScope.Trojan.Tiggre
MaxSecureTrojan.Malware.74553179.susgen
FortinetW32/Generic_PUA_PL.DG!tr
AVGWin32:TrojanX-gen [Trj]

How to remove Fugrafa.80947?

Fugrafa.80947 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment