Malware

Should I remove “Graftor.303410”?

Malware Removal

The Graftor.303410 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.303410 virus can do?

  • Sample contains Overlay data
  • Unconventionial binary language: Russian
  • Unconventionial language used in binary resources: Russian
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Graftor.303410?


File Info:

name: 48E065E45DC2C0250519.mlw
path: /opt/CAPEv2/storage/binaries/30bc3d64c07180c0cf1bf24927e4178f50fa2231f00a1bb9cae49df6d50830aa
crc32: A5653631
md5: 48e065e45dc2c02505192dbe28e3c676
sha1: c206e52975707395bc55d60e44b58c5764ec6253
sha256: 30bc3d64c07180c0cf1bf24927e4178f50fa2231f00a1bb9cae49df6d50830aa
sha512: a9c8b96d1f449cb8f028ae5842e08bf9c3c0bc190548d2654617d7d98c3aa187132ff80be4ea1597eeef935ad26f12505b5c2b1e3a6513be5223624f5b427e77
ssdeep: 3072:ftdIInlsYawvBGiq4l2lTvXW+DD6meY9hbnn81IxLqpbADS:ftdI3YvvBpq4lsTvG+Dm5Mhbnn+Ipu
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14734E153E0DB843DE4075FF0C54972DA2BE7E9C8137227B1DB6E029CADF2484469A749
sha3_384: 63d9317aa664cc61f055297a608347e7ac758ba6d8cde637aa81e57af0cfb84b4ae7027cf3dac3db44f51fbbcbace7ba
ep_bytes: 6a6068b0814000e858f9ffffbf940000
timestamp: 2016-09-12 15:01:19

Version Info:

ProductVersion: 777777777777777777777777777
Translation: 0x0419 0x04b0

Graftor.303410 also known as:

BkavW32.AIDetectMalware
DrWebTrojan.Encoder.5985
MicroWorld-eScanGen:Variant.Graftor.303410
CAT-QuickHealTrojan.Generic.SK1
McAfeeRansomware-FSY!48E065E45DC2
MalwarebytesMachineLearning/Anomalous.100%
VIPREGen:Variant.Graftor.303410
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0055e3e11 )
K7GWTrojan ( 0055e3e11 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZexaF.36318.ou1@aGh4IEhc
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.FGLE
APEXMalicious
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Graftor.303410
NANO-AntivirusTrojan.Win32.Encoder.elomqh
AvastWin32:Evo-gen [Trj]
EmsisoftGen:Variant.Graftor.303410 (B)
F-SecureTrojan.TR/Crypt.ZPACK.tiyll
BaiduWin32.Trojan.Cerber.b
ZillyaTrojan.Zerber.Win32.375
TrendMicroRansom_HPCERBER.SM51
McAfee-GW-EditionBehavesLike.Win32.Generic.dh
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.48e065e45dc2c025
SophosMal/CerberW-A
SentinelOneStatic AI – Suspicious PE
GDataGen:Variant.Graftor.303410
JiangminTrojan.Poweliks.cb
GoogleDetected
AviraTR/Crypt.ZPACK.tiyll
ArcabitTrojan.Graftor.D4A132
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftPWS:Win32/Zbot!ml
CynetMalicious (score: 100)
VBA32Hoax.Zerber
ALYacGen:Variant.Graftor.303410
MAXmalware (ai score=80)
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom_HPCERBER.SM51
RisingTrojan.Crypto!8.364 (TFE:1:TAePYNFLklK)
YandexTrojan.GenAsa!764NiVwAOnk
FortinetW32/Cerber.D!tr
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS

How to remove Graftor.303410?

Graftor.303410 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment