Malware

Graftor.370829 (file analysis)

Malware Removal

The Graftor.370829 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.370829 virus can do?

  • Executable code extraction
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Graftor.370829?


File Info:

crc32: 7AC54DD1
md5: 9fe84d822f3a174cc025046729ef2e02
name: 9FE84D822F3A174CC025046729EF2E02.mlw
sha1: 64725adc665ea8c8e261ee47e2ccecc0200af95d
sha256: 60184723fd19d94ff0474c9d964ff2deebb3683ec176862900cc10b539cc0797
sha512: e0db9ee3d2bc1843f6eae71f8b14e5f5457fa24e89e3a94b2536e4eb6ed77a1b6374072ee5060ea407b2926a368777fd721b94877fd4cc452a718aabc7645b4c
ssdeep: 3072:OJo/LM8QPDIhRyHejGnBmGrw3KttAxnnpmHBWuKD4outA:iibQrARsemmkw3cKxnYhAEoS
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: EasyProSeal_Thai_34
FileVersion: 1.00
CompanyName: EasyPro
ProductName: EasyProBotSeal
ProductVersion: 1.00
OriginalFilename: EasyProSeal_Thai_34.exe

Graftor.370829 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 004c74681 )
CynetMalicious (score: 99)
ALYacGen:Variant.Graftor.370829
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaTrojan:Win32/Skillis.f3cd58c5
K7GWTrojan ( 004c74681 )
Cybereasonmalicious.22f3a1
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Skillis.AMI
APEXMalicious
AvastWin32:Malware-gen
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Graftor.370829
NANO-AntivirusTrojan.Win32.RedCap.ewwrhk
MicroWorld-eScanGen:Variant.Graftor.370829
TencentWin32.Trojan.Graftor.Hznk
Ad-AwareGen:Variant.Graftor.370829
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZevbaF.34236.jmKfaa0o0Aci
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0GK121
McAfee-GW-EditionBehavesLike.Win32.Trojan.cc
FireEyeGen:Variant.Graftor.370829
EmsisoftGen:Variant.Graftor.370829 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1118148
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.23FB0D0
MicrosoftPWS:Win32/Zbot!ml
GDataGen:Variant.Graftor.370829
AhnLab-V3Malware/Win32.Generic.C1928054
McAfeeArtemis!9FE84D822F3A
MAXmalware (ai score=96)
MalwarebytesMalware.Heuristic.1003
PandaTrj/GdSda.A
YandexTrojan.Skillis!Hbz3+HrnuXk
IkarusTrojan.Win32.VB
FortinetW32/Generic.AP.792F66!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Graftor.370829?

Graftor.370829 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment