Malware

Fugrafa.93229 (file analysis)

Malware Removal

The Fugrafa.93229 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.93229 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process created a hidden window
  • Executed a very long command line or script command which may be indicative of chained commands or obfuscation
  • A scripting utility was executed
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Fugrafa.93229?


File Info:

crc32: 6DB81A55
md5: 0e18308ce0d8f9cc0a8557b0187423d1
name: 0E18308CE0D8F9CC0A8557B0187423D1.mlw
sha1: ff01fa3fd3ccd9b5dd50f4862c5db0d980aa77e0
sha256: 39a886fa6fefee30c8f8a934123761e7cab501fc7ff0992f5940e321b5fca869
sha512: 88cf24ef9edac18d5cab3ffa01a88e420016cbdd1274aede2b5458021f2f63d3cce3f737ca9fbc1d3329de5d09e92397d070bad07d65e6b392253b64e2ecaf94
ssdeep: 6144:q+dj1kXlJyIJ+lDAAEh8Fex1UE1VnKNBYaUb:WXlJyZdAAEj1UEbnCeb
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Violet Epps
InternalName: 00AWJAEG5S
FileVersion: 1.0
CompanyName: Castillo INC.
ProductName: 00AWJAEG5S
ProductVersion: 1.0
FileDescription: Lorem ipsum dolor sit amet, consecteteur adipiscing elit.
OriginalFilename: pdf.exe
Translation: 0x0409 0x04e4

Fugrafa.93229 also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Fugrafa.93229
CylanceUnsafe
AlibabaTrojanDownloader:Win32/PsDownload.b50abfd6
Cybereasonmalicious.ce0d8f
SymantecTrojan.PowStage
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Downloader.Win32.PsDownload.jaq
BitDefenderGen:Variant.Fugrafa.93229
MicroWorld-eScanGen:Variant.Fugrafa.93229
Ad-AwareGen:Variant.Fugrafa.93229
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34738.x83@aWLyc5ji
TrendMicroTROJ_GEN.R005C0OFD21
McAfee-GW-EditionBehavesLike.Win32.Virut.fh
FireEyeGen:Variant.Fugrafa.93229
EmsisoftGen:Variant.Fugrafa.93229 (B)
MicrosoftTrojan:Win32/Wacatac.B!ml
GridinsoftMalware.Win32.Gen.vl!i
ArcabitTrojan.Fugrafa.D16C2D
GDataGen:Variant.Fugrafa.93229
AhnLab-V3Trojan/Win.OX.R417946
McAfeeArtemis!0E18308CE0D8
MAXmalware (ai score=89)
VBA32BScope.Trojan.Click
MalwarebytesMalware.AI.1992665722
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R005C0OFD21
IkarusTrojan.PowerShell.Rozena
MaxSecureTrojan.Malware.300983.susgen
FortinetMalicious_Behavior.SB
AVGWin32:Malware-gen

How to remove Fugrafa.93229?

Fugrafa.93229 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment