Malware

Graftor.713369 (file analysis)

Malware Removal

The Graftor.713369 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.713369 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Graftor.713369?


File Info:

crc32: 534941A1
md5: bf077bd6e3804a0b43ff188a5641602c
name: nna.png
sha1: b049d9986212beca34c52032bee9e70d5b125edc
sha256: 61babd29953f88434df2e081900a804c79f90a768685a5e479c2dcfbd91f4cab
sha512: 4952831c8653bfc4a442f6243eb019f3fbb64fee43e1af0946b2777e861d32a70b3b813f27a1d50e3c712af02337c3451cb4848f3b36f73074a6895e093af813
ssdeep: 768:Y57HI84Q/p2132vFJbcHiF9NSjyTHUGNu5:Y57HI84QR2IvFwW9kjyLBNu5
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0804 0x04b0
LegalCopyright:
InternalName: Peucyl
FileVersion: 1.00
CompanyName: Udskrivningsmenuers2
Comments: Afgiftsperioden7
ProductName: SEKUNDERINGEN
ProductVersion: 1.00
FileDescription: WITHGANG
OriginalFilename: Peucyl.exe

Graftor.713369 also known as:

MicroWorld-eScanGen:Variant.Graftor.713369
FireEyeGen:Variant.Graftor.713369
McAfeeRDN/Generic.dx
AegisLabTrojan.Win32.Graftor.4!c
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Graftor.713369
K7GWRiskware ( 0040eff71 )
BitDefenderThetaGen:NN.ZevbaF.34090.em0@aWrcJ0ob
CyrenW32/VBKrypt.AEU.gen!Eldorado
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_GEN.R002H09BN20
GDataGen:Variant.Graftor.713369
KasperskyBackdoor.Win32.Remcos.mbf
APEXMalicious
Ad-AwareGen:Variant.Graftor.713369
F-SecureTrojan.TR/AD.VBCryptor.iydab
McAfee-GW-EditionBehavesLike.Win32.Trojan.kt
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Graftor.713369 (B)
F-ProtW32/VBKrypt.AEU.gen!Eldorado
AviraTR/AD.VBCryptor.iydab
MAXmalware (ai score=81)
Endgamemalicious (high confidence)
ArcabitTrojan.Graftor.DAE299
ZoneAlarmBackdoor.Win32.Remcos.mbf
MicrosoftTrojan:Win32/Wacatac.C!ml
ALYacGen:Variant.Graftor.713369
MalwarebytesTrojan.Injector
PandaTrj/GdSda.A
ESET-NOD32a variant of Generik.IIAESRG
IkarusTrojan.SuspectCRC
AVGFileRepMalware
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Graftor.713369?

Graftor.713369 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment