Malware

Graftor.18460 removal guide

Malware Removal

The Graftor.18460 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.18460 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Attempts to modify proxy settings

How to determine Graftor.18460?


File Info:

name: DD849DC17C2778E8AE79.mlw
path: /opt/CAPEv2/storage/binaries/b7dcebec87e08e0435fdf1bafca00fcd903eb25e5bb071cb3605872bdd66ca31
crc32: 3AD14ED2
md5: dd849dc17c2778e8ae79a47941de15c0
sha1: bb5a8a7cef6f3fc651ddf6bca7217bdffb7dac3a
sha256: b7dcebec87e08e0435fdf1bafca00fcd903eb25e5bb071cb3605872bdd66ca31
sha512: 74abd71e90b36176b84287b788b42f930bb9ebd310f491d1a53bf53f9e7cb75b619e941c9cc09a79bf3e047226f848096b587f9a59039c070fd27bac7de38d4e
ssdeep: 1536:wrVOXgpwe51IEQIcuJpaeDlICdclUOBrPO0Hjrmfzm:cws51vzJjlICdZC5DB
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B7A36D3BF9588008F2E545B81876A6A739297D705544DC26FBA2FF4D2CB1B82B8F1707
sha3_384: 3ae46447be69bc9b2ee5c777d49e631f930870f11589895f8cc4574c4fcc7b95332bf5195c06af8b9120c320b1370c54
ep_bytes: 6854c34000e8f0ffffff000000000000
timestamp: 2010-11-16 11:32:55

Version Info:

Translation: 0x0409 0x04b0
ProductName: Project1
FileVersion: 1.00
ProductVersion: 1.00
InternalName: puxador_amigo
OriginalFilename: puxador_amigo.exe

Graftor.18460 also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanGen:Variant.Graftor.18460
ClamAVWin.Dropper.Remcos-9800818-0
McAfeeArtemis!DD849DC17C27
MalwarebytesMachineLearning/Anomalous.96%
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan-Downloader ( 0055e3da1 )
AlibabaTrojanSpy:Win32/Bancos.d97fdbe4
K7GWTrojan-Downloader ( 0055e3da1 )
Cybereasonmalicious.17c277
CyrenW32/Bancos.H.gen!Eldorado
SymantecTrojan.Gen.2
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Spy.Bancos.NVV
APEXMalicious
CynetMalicious (score: 99)
KasperskyTrojan-Downloader.Win32.Agent.ffcb
BitDefenderGen:Variant.Graftor.18460
NANO-AntivirusTrojan.Win32.Agent.iknhu
AvastWin32:Bancos-BMR [Trj]
TencentWin32.Trojan-Downloader.Agent.Fplw
SophosMal/Generic-S
F-SecureTrojan.TR/VB.Downloader.Gen
VIPREGen:Variant.Graftor.18460
McAfee-GW-EditionBehavesLike.Win32.VBObfus.nh
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.dd849dc17c2778e8
EmsisoftGen:Variant.Graftor.18460 (B)
IkarusTrojan-Downloader.Win32.Bancos
GDataGen:Variant.Graftor.18460
WebrootTrojan:Win32/Comisproc
AviraTR/VB.Downloader.Gen
Antiy-AVLTrojan[Downloader]/Win32.Agent
XcitiumMalware@#3o4qywsspeuqw
ArcabitTrojan.Graftor.D481C
ZoneAlarmTrojan-Downloader.Win32.Agent.ffcb
MicrosoftTrojan:Win32/Comisproc
GoogleDetected
MAXmalware (ai score=100)
Cylanceunsafe
PandaTrj/Dadobra.ATE
RisingTrojan.Win32.Generic.12763DC5 (C64:YzY0OuYkRq6OwETR)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/VB.FDM!tr.dldr
BitDefenderThetaAI:Packer.838DCD3F1F
AVGWin32:Bancos-BMR [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_70% (D)

How to remove Graftor.18460?

Graftor.18460 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment