Malware

Ser.Fragtor.2111 malicious file

Malware Removal

The Ser.Fragtor.2111 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ser.Fragtor.2111 virus can do?

  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • CAPE detected the RedLine malware family
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Ser.Fragtor.2111?


File Info:

name: 61CA76C602487CF78DF8.mlw
path: /opt/CAPEv2/storage/binaries/53ad7d33edbd1bd6210abc0e3f3ff2fd899123c36803c13688638d36498a8eb3
crc32: 8C7E2840
md5: 61ca76c602487cf78df8146ae0109c54
sha1: 32c3dd6882fd6766a578963c5d1e9fccb8b2cbdb
sha256: 53ad7d33edbd1bd6210abc0e3f3ff2fd899123c36803c13688638d36498a8eb3
sha512: 35b03e2c1d030ef1154236e7650229e201008cc0f200a6911c518b9b7b0d4d7a60ed3a4649e0c8506871c3b2665377c2022b3482faece7bd284759b1fa536b16
ssdeep: 3072:KxSg1mGx6zz0n44/W2yVh4vwijCc80yWowKTTsGglWjLXrNdOSXXqkhybC:CxnzyTiNoWxmT/gl+rrNIs4m
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1DF8485316AA90214FAC89BB98D77516F8C1C24BC51DFF09F27AA65FC04680C8577AE73
sha3_384: 9ab6b4c876beda50f1b133ae0cd36546fc25726c24f1cbda1b66e386a2a761d010d26a134dbd5b9febabdf5cbbb745ef
ep_bytes: e8103c0000e9a4feffff3b0d2c834500
timestamp: 2023-03-05 20:15:24

Version Info:

Comments: Mint uses underpin lard overheated
CompanyName: Atrophy contrasts verbal
FileDescription: Cinematographer steelclad derby clairvoyant
FileVersion: 5.178.237.3
InternalName: Gametes seductively
LegalCopyright: Copyright © Stoppages liturgical harebells
LegalTrademarks: Misinterpretations shelves fishwife
OriginalFilename: Convert
ProductName: Scattering
ProductVersion: 5.178.237.3
Translation: 0x081a 0x081a

Ser.Fragtor.2111 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Ser.Fragtor.2111
Cylanceunsafe
CrowdStrikewin/malicious_confidence_60% (D)
CyrenW32/Kryptik.IZU.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HSEV
APEXMalicious
KasperskyVHO:Backdoor.Win32.Convagent.gen
BitDefenderGen:Variant.Ser.Fragtor.2111
AvastWin32:TrojanX-gen [Trj]
RisingTrojan.Kryptik!8.8 (TFE:5:ICW0hiJONUD)
EmsisoftGen:Variant.Ser.Fragtor.2111 (B)
DrWebTrojan.PWS.Siggen3.27134
VIPREGen:Variant.Ser.Fragtor.2111
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.61ca76c602487cf7
MAXmalware (ai score=88)
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ArcabitTrojan.Ser.Fragtor.D83F
GDataGen:Variant.Ser.Fragtor.2111
GoogleDetected
ALYacGen:Variant.Ser.Fragtor.2111
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Kryptik.HSEV!tr
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.882fd6
PandaTrj/Genetic.gen

How to remove Ser.Fragtor.2111?

Ser.Fragtor.2111 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment