Malware

Graftor.694044 information

Malware Removal

The Graftor.694044 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.694044 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Deletes its original binary from disk
  • Checks the presence of disk drives in the registry, possibly for anti-virtualization
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine Graftor.694044?


File Info:

crc32: E80928AD
md5: 59fdefa02e934b2db3cf2b1bafdf012d
name: 741252.exe
sha1: 2121f5ff740412a7adcd6f70f40de597ad723ef1
sha256: e47a77c2f23d1cd2f2273c4675bec0efa6db566577c52a3a18f4cc398c7437f4
sha512: 08e57987b2c83d2e2298167de0336d041481c9a8a1d66e87f2a2c8d36f855df2598bfe18865c80f24b7053e3081344c9d444f7bc8d6ef59f580ceaabaed62f00
ssdeep: 6144:ux2uBKvRe+gFMGnO0cOXqpuTfovJCR5sPAYSuMV:kJKcxvO0czoosRLb
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

legalcopyright: Goddess
internalname: Kinfolk
fileversion: 67.72.33.693
legaltrademarks: Behaving
comments: Slavers Groovier
productname: Hatpin Swindled
productversion: 6.67.58.807
filedescription: Bucolics Mowers
Translation: 0x0291 0x0794

Graftor.694044 also known as:

BkavW32.RanumbotGW.Trojan
DrWebTrojan.Inject3.33138
MicroWorld-eScanGen:Variant.Graftor.694044
FireEyeGeneric.mg.59fdefa02e934b2d
CAT-QuickHealTrojan.IGENERIC
Qihoo-360Win32/Trojan.163
McAfeeRDN/Generic.rp
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 0055da1a1 )
BitDefenderGen:Variant.Graftor.694044
K7GWTrojan ( 0055da1a1 )
Cybereasonmalicious.02e934
TrendMicroTROJ_GEN.R011C0WAI20
BitDefenderThetaGen:NN.ZexaF.34090.yuW@aKj!Feli
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
GDataGen:Variant.Graftor.694044
KasperskyTrojan.Win32.CMY3U.brb
AlibabaTrojan:Win32/CMY3U.a8d00299
NANO-AntivirusTrojan.Win32.Inject3.gvmexo
ViRobotTrojan.Win32.Z.Graftor.402944
TencentWin32.Trojan.Cmy3u.Szvx
Endgamemalicious (high confidence)
EmsisoftTrojan.Agent (A)
ComodoMalware@#12trvi964dtic
F-SecureTrojan.TR/AD.Carberp.vgfvd
ZillyaTrojan.GenKryptik.Win32.41535
Invinceaheuristic
McAfee-GW-EditionRDN/Generic.rp
Trapminemalicious.high.ml.score
SophosMal/Generic-S
IkarusTrojan.Win32.Krypt
CyrenW32/Trojan.RVSA-5739
JiangminTrojan.CMY3U.gb
WebrootW32.Trojan.Gen
AviraTR/AD.Carberp.vgfvd
MAXmalware (ai score=89)
Antiy-AVLTrojan/Win32.CMY3U
MicrosoftTrojan:Win32/Occamy.C
ArcabitTrojan.Graftor.DA971C
AegisLabTrojan.Win32.CMY3U.4!c
ZoneAlarmTrojan.Win32.CMY3U.brb
AhnLab-V3Malware/Win32.Generic.C3987129
Acronissuspicious
VBA32BScope.Trojan.Wacatac
ALYacTrojan.Agent.Occamy.A
Ad-AwareGen:Variant.Graftor.694044
MalwarebytesTrojan.MalPack.RND
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/GenKryptik.EAKM
TrendMicro-HouseCallTROJ_GEN.R011C0WAI20
RisingTrojan.GenKryptik!8.AA55 (CLOUD)
YandexTrojan.CMY3U!
SentinelOneDFI – Malicious PE
FortinetW32/Kryptik.FSFS!tr
AVGWin32:Trojan-gen
AvastWin32:Trojan-gen
CrowdStrikewin/malicious_confidence_90% (W)
MaxSecureTrojan.Malware.74781690.susgen

How to remove Graftor.694044?

Graftor.694044 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment