Malware

What is “Graftor.360781”?

Malware Removal

The Graftor.360781 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.360781 virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Unconventionial language used in binary resources: Portuguese (Brazilian)
  • Anomalous binary characteristics

How to determine Graftor.360781?


File Info:

crc32: 8C9E476A
md5: d948ce27df1a9429bbe16442aaca7f87
name: D948CE27DF1A9429BBE16442AACA7F87.mlw
sha1: 2c7c6639bd8e7876b7f7ac0a8b4fe54a0979c2db
sha256: e8d96eec8473e124788d67b36947388486fffc9ec8f6833ada44400df6adf30a
sha512: 968303cf5738651abc36887a55d2cab27eeb450f5c6004f1be01f97e1e7af5159818fef61cc264140d6ff2c5f94d6b94c3e1792b048827eb2333c712da704c0b
ssdeep: 24576:s/8YrWDAqMXOI+zFnyei3H3RR7tpBQVf3wjYdNxUhFvTG+dkxJtTU+uT66FE:smHzVyeQ9tjYb+hF6HTPuT3F
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Graftor.360781 also known as:

MicroWorld-eScanGen:Variant.Graftor.360781
FireEyeGeneric.mg.d948ce27df1a9429
ALYacGen:Variant.Graftor.360781
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan-Downloader ( 00506ac91 )
BitDefenderGen:Variant.Graftor.360781
K7GWTrojan-Downloader ( 00506ac91 )
Cybereasonmalicious.7df1a9
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Banker-NAR [Trj]
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojanDownloader:Win32/Banload.81f59815
NANO-AntivirusTrojan.Win32.Banload.enjlum
AegisLabTrojan.Win32.Generic.4!c
TencentWin32.Trojan.Graftor.Wrgi
Ad-AwareGen:Variant.Graftor.360781
SophosMal/Generic-S
ZillyaTrojan.Generic.Win32.168172
TrendMicroTROJ_GEN.R002C0PLC20
McAfee-GW-EditionBehavesLike.Win32.Dropper.th
EmsisoftGen:Variant.Graftor.360781 (B)
IkarusTrojan-Downloader.Win32.Banload
AviraHEUR/AGEN.1128387
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.AGeneric
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojanDownloader:Win32/Banload
ArcabitTrojan.Graftor.D5814D
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Graftor.360781
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.C1855841
McAfeeTrojan-FLPV!D948CE27DF1A
VBA32TScope.Trojan.Delf
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/TrojanDownloader.Banload.XVM
TrendMicro-HouseCallTROJ_GEN.R002C0PLC20
RisingDownloader.Banload!8.15B (CLOUD)
YandexTrojan.Agent!9CFzo0MWFqI
SentinelOneStatic AI – Malicious PE – Downloader
FortinetW32/Banload.XVM!tr.dldr
BitDefenderThetaAI:Packer.DB9DFED819
AVGWin32:Banker-NAR [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win32/Trojan.8d7

How to remove Graftor.360781?

Graftor.360781 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment