Malware

Application.Application.Graftor.406603 (B) (file analysis)

Malware Removal

The Application.Application.Graftor.406603 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Application.Graftor.406603 (B) virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Application.Application.Graftor.406603 (B)?


File Info:

name: C15F08A1AB32C3F7E516.mlw
path: /opt/CAPEv2/storage/binaries/83175d150018299925ad4205e235cc8e084a9b988b5966011509ac3fc6e57edb
crc32: F1BDD2BE
md5: c15f08a1ab32c3f7e5167f7bcf6c9b3c
sha1: b84ea01225e22f33cb96b1116ed88f9bfa944c9a
sha256: 83175d150018299925ad4205e235cc8e084a9b988b5966011509ac3fc6e57edb
sha512: a0d5cf8bacde7dbc1be955107c5613d7c4d72de494731094f8673c89f3d6895c899e20811796be6112f29dc7de2710a1c7ea9066b4ba94f1b76cfb19128ea29e
ssdeep: 24576:Hmek1z4kfU5g8V2khbiU6Sqf5z/LqZFExOyPBOnjH:HC+QUiybFqx/LvOIBO7
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B335AE23F25180F7C1692AB115F65B3ABE7087420A25CAD3FBF4DDB86C32591A72724D
sha3_384: 0f4756232cff5cfb01e1d26e8756ce9c6e536be89920f94b4ba1e2efca4a981c90027fa8401dc820d42c304cbeb08ae8
ep_bytes: 558bec6aff68c0664d0068dcac4a0064
timestamp: 2024-01-31 13:22:33

Version Info:

0: [No Data]

Application.Application.Graftor.406603 (B) also known as:

BkavW32.Common.2ECBA870
LionicTrojan.Multi.Generic.mpTZ
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Application.Application.Graftor.406603
FireEyeGeneric.mg.c15f08a1ab32c3f7
SkyhighBehavesLike.Win32.Generic.th
ALYacGen:Variant.Application.Application.Graftor.406603
Cylanceunsafe
ZillyaBackdoor.Agent.Win32.94235
SangforSuspicious.Win32.Save.ins
K7GWTrojan ( 005246d51 )
K7AntiVirusTrojan ( 005246d51 )
BitDefenderThetaGen:NN.ZexaF.36804.arW@a0lOCEfb
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/FlyStudio.Injector.D potentially unwanted
APEXMalicious
TrendMicro-HouseCallTROJ_GEN.R002H0CD124
AvastWin32:Evo-gen [Trj]
KasperskyHEUR:Backdoor.Win32.Agent.gen
BitDefenderGen:Variant.Application.Application.Graftor.406603
NANO-AntivirusTrojan.Win32.Barys.kceayc
EmsisoftGen:Variant.Application.Application.Graftor.406603 (B)
F-SecureTrojan.TR/AVI.Gh0stCringe.tkpmq
DrWebTrojan.Siggen25.34112
VIPREGen:Variant.Application.Application.Graftor.406603
Trapminesuspicious.low.ml.score
SophosMal/Generic-S
Paloaltogeneric.ml
MAXmalware (ai score=74)
JiangminTrojanDownloader.Upatre.agsy
GoogleDetected
AviraTR/AVI.Gh0stCringe.tkpmq
VaristW32/Trojan.CLL.gen!Eldorado
Antiy-AVLRiskWare/Win32.FlyStudio.a
Kingsoftmalware.kb.a.927
MicrosoftTrojan:Win32/Wacatac.A!ml
XcitiumTrojWare.Win32.Agent.OSCF@5rs7jr
ArcabitTrojan.Application.Application.Graftor.D6344B
ZoneAlarmHEUR:Backdoor.Win32.Agent.gen
GDataWin32.Trojan.PSE.1H6ZYWO
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.R645296
VBA32BScope.Trojan.Tiggre
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Chgt.AD
RisingTrojan.Agent!1.E562 (CLASSIC)
IkarusTrojan.Win32.Injector
FortinetRiskware/FlyStudio
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
alibabacloudBackdoor:Win/Graftor

How to remove Application.Application.Graftor.406603 (B)?

Application.Application.Graftor.406603 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment