Malware

Graftor.691452 removal

Malware Removal

The Graftor.691452 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.691452 virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Presents an Authenticode digital signature
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)

Related domains:

z.whorecord.xyz
log.ahhxwavi.cn
a.tomx.xyz

How to determine Graftor.691452?


File Info:

crc32: 779BCE38
md5: 4d73532453298c351671b98da319ff89
name: setup_pdfeditor_pdfeditor100-bj-673.exe
sha1: d212005aad99afbcd6c3062b8064a233db91e5f9
sha256: d73bc7b9dc92f894ca63ec4c80c7e9b9084dbd54b47ef5eeee1f1456b739b3eb
sha512: 3538d715c0dd261233e556f9327f2e2156f7333751eb880703fad0a0e6acde40d3841d35f3249c203e9d2e89f5555ca31483c394c90d85874514bf1d628680a8
ssdeep: 49152:dq8ZY5OR++P1zPdnr0kFgp1lUjaPFtTnFtbnFtXSc8njrnBIpK:dHZUOR1tzPdnrlgp1ioTFNFkcy
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2019 Shanghai Shaji Network Technology Co., Ltd
InternalName: Setup.exe
CompanyName: Shanghai Shaji Network Technology Co., Ltd
ProductName: x98cex4e91PDFx7f16x8f91x5668
ProductVersion: 1.0.0.1
FileDescription: x98cex4e91PDFx7f16x8f91x5668x5b89x88c5x7a0bx5e8f
OriginalFilename: Setup.exe
Translation: 0x0804 0x04b0

Graftor.691452 also known as:

MicroWorld-eScanGen:Variant.Graftor.691452
FireEyeGen:Variant.Graftor.691452
McAfeeGenericRXLI-EZ!4D7353245329
SangforMalware
BitDefenderGen:Variant.Graftor.691452
APEXMalicious
Paloaltogeneric.ml
GDataGen:Variant.Graftor.691452
Ad-AwareGen:Variant.Graftor.691452
Invinceaheuristic
EmsisoftGen:Variant.Graftor.691452 (B)
IkarusTrojan-Downloader.Win32.Adload
CyrenW32/Trojan.MKNU-6740
MAXmalware (ai score=87)
ArcabitTrojan.Graftor.DA8CFC
MicrosoftPUA:Win32/Puasson.A!ml
ALYacGen:Variant.Graftor.691452
AVGWin32:DropperX-gen [Drp]
AvastWin32:DropperX-gen [Drp]

How to remove Graftor.691452?

Graftor.691452 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment