Malware

Graftor.104043 (file analysis)

Malware Removal

The Graftor.104043 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.104043 virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)

How to determine Graftor.104043?


File Info:

name: E8487C3B25E9D200BECD.mlw
path: /opt/CAPEv2/storage/binaries/5d625f4a06438c4c674663d3919c8bbcd92b89dffd3b7ec8300813b79769b2b6
crc32: 4B057FFC
md5: e8487c3b25e9d200becd86fbc4585dbf
sha1: 4094a5b3b23acb8643eefcd6d0bbba6e59ded006
sha256: 5d625f4a06438c4c674663d3919c8bbcd92b89dffd3b7ec8300813b79769b2b6
sha512: 9f4e7e2b326021f288b7dddd17863881fb1b3242d4e6278fb59167f79ce6f0e4db1f4f5d547b62ecc090b173b1c03784b8fd89aa49c5934e67bdb7cbb770c50f
ssdeep: 98304:GLiI900Fn1YEs68hUhU7PGYoYQX6TfEYmL6/10j:uIR6zmP7W6vk6
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F526A003F992C0F1D65C153015767B3EAA7D9A464A28CFC3B3A4EE691D32581E63732E
sha3_384: e42389b6cdb03ba4e473aa24ffdfe78175a52aa2c1cd356dced3c6573bdca5a3bfbaf47ccc62d223eb12a7a73c625eaf
ep_bytes: 558bec6aff68184b830068b4244d0064
timestamp: 2022-01-29 09:49:41

Version Info:

0: [No Data]

Graftor.104043 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Graftor.104043
FireEyeGeneric.mg.e8487c3b25e9d200
ALYacGen:Variant.Graftor.104043
CylanceUnsafe
CrowdStrikewin/malicious_confidence_60% (D)
K7GWTrojan ( 005246d51 )
K7AntiVirusTrojan ( 005246d51 )
ArcabitTrojan.Graftor.D1966B
BitDefenderThetaGen:NN.ZexaF.34212.@tW@a4Rubnhb
CyrenW32/Agent.EW.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/FlyStudio.HackTool.A potentially unwanted
ClamAVWin.Malware.Flystudio-9752414-0
KasperskyHEUR:Trojan-Downloader.Win32.Upatre.gen
BitDefenderGen:Variant.Graftor.104043
Ad-AwareGen:Variant.Graftor.104043
SophosGeneric PUA EA (PUA)
ComodoTrojWare.Win32.Agent.OSCF@5rs7jr
McAfee-GW-EditionBehavesLike.Win32.Generic.rh
SentinelOneStatic AI – Malicious PE
EmsisoftGen:Variant.Graftor.104043 (B)
APEXMalicious
AviraTR/Dldr.Upatre.egvkc
Antiy-AVLTrojan/Generic.ASCommon.FA
MicrosoftTrojan:Win32/Woreflint.A!cl
GDataGen:Variant.Graftor.104043
CynetMalicious (score: 100)
Acronissuspicious
McAfeeArtemis!E8487C3B25E9
MAXmalware (ai score=86)
VBA32BScope.Trojan.Tiggre
MalwarebytesTrojan.MalPack.FlyStudio
RisingMalware.Heuristic!ET#95% (RDMK:cmRtazrePYlbwdqmYvniQkkN5G+n)
eGambitHackTool.Generic
FortinetW32/CoinMiner.65CA!tr
PandaTrj/GdSda.A
MaxSecureTrojan.Malware.300983.susgen

How to remove Graftor.104043?

Graftor.104043 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment