Malware

What is “Graftor.359353”?

Malware Removal

The Graftor.359353 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.359353 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Authenticode signature is invalid
  • Network activity detected but not expressed in API logs

Related domains:

wpad.local-net

How to determine Graftor.359353?


File Info:

name: A9C687C67DE46500C8A3.mlw
path: /opt/CAPEv2/storage/binaries/04870e49f997df8411dfa8a307e1241ebfb970f787e2c1e358e1dc6ebbc106e6
crc32: 2AFD4434
md5: a9c687c67de46500c8a395ffec1b253c
sha1: e2ad1594e676df199892d056dfa40685f90a2416
sha256: 04870e49f997df8411dfa8a307e1241ebfb970f787e2c1e358e1dc6ebbc106e6
sha512: 922927f100e80063fc5ebd0f4bc49d2590271c73d89330fba9eeeeaa6e021872bb35cd75775bf12ddc9ef47e7b31e7d009a31bba1ef38726b2437b2d3746518d
ssdeep: 6144:cIux1aOmntlBZi8H8sCJIY1PQDlgE9QlTBPRB:1a1WXmQW514DlH94TB
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T135347C02F392D173D8A21070196AD3B2593D7639573DD0CBFBE40E796E602D2AA3874E
sha3_384: 36cbb5295b1848dcaabf132bd1d5363a638fba070cec534b91732548c3496c6f68e610455c33e65a9efaf5184b611e35
ep_bytes: e86b620000e995feffff8bff558bec83
timestamp: 2016-10-31 08:09:11

Version Info:

0: [No Data]

Graftor.359353 also known as:

Elasticmalicious (high confidence)
DrWebTrojan.Kbdmai.20
MicroWorld-eScanGen:Variant.Graftor.359353
FireEyeGen:Variant.Graftor.359353
ALYacGen:Variant.Graftor.359353
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforRootkit.Win32.Agent.gen
AlibabaAdWare:Win32/Adstantinko.bfa53deb
ArcabitTrojan.Graftor.D57BB9
BitDefenderThetaGen:NN.ZexaF.34294.pqW@a47LJdm
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/Adware.Adstantinko.KE
TrendMicro-HouseCallTROJ_GEN.R002H09IT21
BitDefenderGen:Variant.Graftor.359353
NANO-AntivirusTrojan.Win32.Kbdmai.epgcyn
AvastWin32:Rootkit-gen [Rtk]
TencentWin32.Trojan.Graftor.Lple
Ad-AwareGen:Variant.Graftor.359353
ComodoApplicUnwnt@#1weq2br4wmhzt
McAfee-GW-EditionArtemis!PUP
EmsisoftGen:Variant.Graftor.359353 (B)
MAXmalware (ai score=82)
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataGen:Variant.Graftor.359353
McAfeeArtemis!A9C687C67DE4
MalwarebytesGeneric.Malware/Suspicious
APEXMalicious
RisingDownloader.Stantinko!1.AF7D (CLASSIC)
IkarusPUA.Adgosteru
WebrootW32.Rogue.Gen
AVGWin32:Rootkit-gen [Rtk]
Cybereasonmalicious.67de46

How to remove Graftor.359353?

Graftor.359353 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment