Malware

Graftor.344357 removal

Malware Removal

The Graftor.344357 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.344357 virus can do?

  • Injection (inter-process)
  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Attempts to restart the guest VM
  • Detects Sandboxie through the presence of a library
  • A potential decoy document was displayed to the user
  • Checks the version of Bios, possibly for anti-virtualization
  • Attempts to modify proxy settings
  • Collects information to fingerprint the system

Related domains:

www.quaintspokenracketiest.site

How to determine Graftor.344357?


File Info:

crc32: C2763A43
md5: bf8a370332552ff4b9b5c1191a8c88b2
name: BF8A370332552FF4B9B5C1191A8C88B2.mlw
sha1: 18e51223aa2018dfc241ed06bef27df4f25615f1
sha256: dddbcb5378c7f99ba7687245528de5576342390200aaf74c67277ab079344c90
sha512: 37dd9c5205164534820777fcbfb7e1d7755b15236fcb241d4cf852df0ce9adf4af62076c85e68ec611664b63c552824fca25b66f83e0c90095df32b9eb81e460
ssdeep: 24576:KuvkTslfQQ1LY2cgkxi682Spcbq3PSEPWFn2qjMcloaNYLXN5oFj3OkQT:bvLfBYrs6zbq3PZWxzMYTNKXN6Fj35
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Graftor.344357 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Graftor.344357
FireEyeGeneric.mg.bf8a370332552ff4
ALYacGen:Variant.Graftor.344357
CylanceUnsafe
ZillyaDownloader.Adload.Win32.43541
SangforMalware
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderGen:Variant.Graftor.344357
K7GWTrojan ( 00504c181 )
K7AntiVirusTrojan ( 00507f2b1 )
BaiduWin32.Trojan.Kryptik.azz
CyrenW32/S-064d2515!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Dropper-gen [Drp]
Kasperskynot-a-virus:HEUR:Downloader.Win32.Generic
NANO-AntivirusTrojan.Win32.AdLoad.ellntj
RisingTrojan.Kryptik!1.A6EC (CLASSIC)
Ad-AwareGen:Variant.Graftor.344357
SophosAmonetize (PUA)
F-SecureHeuristic.HEUR/AGEN.1117579
DrWebTrojan.Amonetize.14387
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
EmsisoftGen:Variant.Graftor.344357 (B)
SentinelOneStatic AI – Malicious PE – Adware
JiangminDownloader.AdLoad.mdq
WebrootPua.Amonetize
AviraHEUR/AGEN.1117579
MAXmalware (ai score=88)
Antiy-AVLRiskWare[Downloader]/Win32.AdLoad
MicrosoftPUA:Win32/Amonetize
ArcabitTrojan.Graftor.D54125
ZoneAlarmnot-a-virus:HEUR:Downloader.Win32.Generic
GDataGen:Variant.Graftor.344357
CynetMalicious (score: 100)
AhnLab-V3PUP/Win32.AdLoad.R194633
Acronissuspicious
McAfeeArtemis!BF8A37033255
MalwarebytesPUP.Optional.IStartSurf
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/Kryptik.FOCW
TencentMalware.Win32.Gencirc.10bc08b3
YandexTrojan.GenAsa!t0EmAP/7alA
IkarusPUA.Amonetize
eGambitUnsafe.AI_Score_98%
FortinetW32/Kryptik.FOCW!tr
BitDefenderThetaGen:NN.ZexaF.34804.THW@aCVs2xbi
AVGWin32:Dropper-gen [Drp]
Paloaltogeneric.ml
Qihoo-360Win32/Virus.Downloader.49b

How to remove Graftor.344357?

Graftor.344357 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment