Malware

About “Graftor.702609” infection

Malware Removal

The Graftor.702609 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.702609 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Uses Windows utilities for basic functionality
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

tuesok.top

How to determine Graftor.702609?


File Info:

crc32: 6BC2D29B
md5: 7063a033f0ca5aaaf66e9ea35f51b10c
name: 7063A033F0CA5AAAF66E9EA35F51B10C.mlw
sha1: d8964dc86563158be273faf842820b588c52f94b
sha256: d77890815c6c446a844633ee51836a62bea288f95cf5fe30ed663639ab8c09f1
sha512: 0d26c8b08e019076e6f3aaf64edd8263ab65a7dd84afc05fb43e097335c8c2caa7cf5e69a635e1c3dc619670c6f6c7b3085557de7413a73a5ba5de2e210d610a
ssdeep: 49152:3iBCY+u2f7AdPYh/xLfY4/tUh+p8dnjv4/ySvpv:3ip28dYh/xhFi+j/Lpv
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9. All rights reserved. iTutorGroup
FileVersion: 9.9.8.5
CompanyName: iTutorGroup
Comments: Computation Job Laplink 274 Functionally
ProductName: Lift
ProductVersion: 9.9.8.5
FileDescription: Computation Job Laplink 274 Functionally
Translation: 0x0409 0x04b0

Graftor.702609 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader32.45715
CynetMalicious (score: 100)
ALYacGen:Variant.Graftor.702609
CylanceUnsafe
ZillyaTrojan.GenKryptik.Win32.41675
SangforTrojan.Win32.ZPACK.skloh
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanDropper:Win32/Dropback.a87502aa
Cybereasonmalicious.3f0ca5
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.EBPM
APEXMalicious
AvastSf:FakeAV-C [Trj]
KasperskyHEUR:Trojan-Dropper.Win32.Dropback.pef
BitDefenderGen:Variant.Graftor.702609
NANO-AntivirusTrojan.Win32.GenKryptik.hdopfw
MicroWorld-eScanGen:Variant.Graftor.702609
Ad-AwareGen:Variant.Graftor.702609
SophosTroj/Ryuk-AA
BitDefenderThetaGen:NN.ZexaF.34294.@t0@aGE8YDii
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Dropper.tt
FireEyeGeneric.mg.7063a033f0ca5aaa
EmsisoftGen:Variant.Graftor.702609 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDropper.Dropback.gx
AviraTR/Crypt.ZPACK.skloh
Antiy-AVLTrojan/Generic.ASMalwS.2FD89FC
MicrosoftTrojan:Win32/Occamy.CD7
ArcabitTrojan.Graftor.DAB891
GDataGen:Variant.Graftor.702609
McAfeeArtemis!7063A033F0CA
MAXmalware (ai score=81)
VBA32BScope.Trojan.Wacatac
PandaTrj/GdSda.A
RisingTrojan.Generic@ML.90 (RDMK:OEC/YTVZAZWvECKS0Aou+g)
IkarusTrojan-Ransom.GandCrab
MaxSecureTrojan.Malware.74781579.susgen
FortinetW32/GenKryptik.EBPM!tr
AVGSf:FakeAV-C [Trj]
Paloaltogeneric.ml

How to remove Graftor.702609?

Graftor.702609 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment