Malware

Graftor.385092 removal instruction

Malware Removal

The Graftor.385092 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.385092 virus can do?

  • Creates RWX memory
  • Reads data out of its own binary image
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Albanian
  • Installs itself for autorun at Windows startup
  • Attempts to modify proxy settings
  • Creates a copy of itself

Related domains:

github.com

How to determine Graftor.385092?


File Info:

crc32: FEC92E6B
md5: fe3b8fcee270ab8b3474078bfdc0dc54
name: FE3B8FCEE270AB8B3474078BFDC0DC54.mlw
sha1: 474d95d295afb058c0d0179a9d953aaf90fbd53e
sha256: 02e9195b5f63ccfbd068bbfb6caf3ec913d1e4b8e4c5e861e494e284aaea6c43
sha512: 65768993d3d718e64c622cf4f9138307a3da51f9e1520c9ef1517266cb3ab85ad595bc37d0893aa3fb1731c761e3ae5bab357bd129ec9baf00afd472da661e72
ssdeep: 768:q7XZbvICtu5wNcIWC2MYCPhytG66dkvTh7z/fceFwzxdLAbDIZsUbIptzdfh:eOkfN2+P8mkvV7oJxd2UbAtzdfh
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Graftor.385092 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005117321 )
LionicTrojan.Win32.Agent.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Graftor.385092
CylanceUnsafe
SangforTrojan.Win32.Agent.qwgczt
K7GWTrojan ( 005117321 )
Cybereasonmalicious.ee270a
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Boychi.AA
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan.Win32.Agent.qwgczt
BitDefenderGen:Variant.Graftor.385092
NANO-AntivirusTrojan.Win32.Fuery.eyyvxz
MicroWorld-eScanGen:Variant.Graftor.385092
TencentWin32.Trojan.Agent.Eerb
Ad-AwareGen:Variant.Graftor.385092
SophosMal/Generic-S
ComodoMalware@#1fzx7sig89t4i
BitDefenderThetaAI:Packer.746D507A1F
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericRXCA-IU!FE3B8FCEE270
FireEyeGeneric.mg.fe3b8fcee270ab8b
EmsisoftGen:Variant.Graftor.385092 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1117345
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.2507F2D
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Graftor.385092
AhnLab-V3Trojan/Win32.Agent.C92324
McAfeeGenericRXCA-IU!FE3B8FCEE270
MAXmalware (ai score=98)
VBA32BScope.Trojan.SvcHorse.01643
MalwarebytesMachineLearning/Anomalous.100%
PandaTrj/GdSda.A
IkarusWorm.Win32.Boychi
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Boychi.AA!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Graftor.385092?

Graftor.385092 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment