Malware

Graftor.740805 removal instruction

Malware Removal

The Graftor.740805 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.740805 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Creates a hidden or system file
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine Graftor.740805?


File Info:

crc32: B84EBF6E
md5: 444f0238b5799a09c43f781f8f301db9
name: fcd96c2b_bysq.exe
sha1: 9f9e23b1949627f278d95269eec7e041ff79fe4f
sha256: 114a6640f43dad020c351051ed685510645993b25f259b9a272461d28929240e
sha512: f91275f4a7ea262acbbd286edf08d63a34abfb2d681556a635776cf238a791c275351a58ffe61864e77771357d2723a36b0a18618ab89561e7ce30b5c35926fc
ssdeep: 196608:M6EwThPL67P/KCgjqvII+/jkEvTQa15QTrgcAJdrdu/4WJa80gQT:M6jTl67PPvIIy4E71bQYcgdrd04WJv0t
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Graftor.740805 also known as:

MicroWorld-eScanGen:Variant.Graftor.740805
FireEyeGeneric.mg.444f0238b5799a09
McAfeeArtemis!444F0238B579
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusAdware ( 0050718d1 )
BitDefenderGen:Variant.Graftor.740805
K7GWAdware ( 0050718d1 )
Cybereasonmalicious.194962
Invinceaheuristic
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
GDataGen:Variant.Graftor.740805
KasperskyTrojan-Downloader.Win32.Upatre.itil
AlibabaTrojanDownloader:Win32/Upatre.31d8df4f
ViRobotTrojan.Win32.Z.Graftor.8080069
AegisLabTrojan.Win32.Upatre.a!c
RisingTrojan.Inject!1.B866 (CLOUD)
Endgamemalicious (high confidence)
EmsisoftGen:Variant.Graftor.740805 (B)
ComodoTrojWare.Win32.Agent.OSCF@5rs7jr
F-SecureTrojan.TR/Dldr.Upatre.djaum
TrendMicroTROJ_GEN.R067C0WEP20
SophosMal/Generic-S
IkarusTrojan-Downloader.Upatre
CyrenW32/Trojan.SVPY-0064
AviraTR/Dldr.Upatre.djaum
eGambitUnsafe.AI_Score_100%
MAXmalware (ai score=85)
MicrosoftTrojan:Win32/Occamy.C11
ArcabitTrojan.Graftor.DB4DC5
ZoneAlarmTrojan-Downloader.Win32.Upatre.itil
CynetMalicious (score: 85)
VBA32TrojanDownloader.Upatre
ALYacGen:Variant.Graftor.740805
Ad-AwareGen:Variant.Graftor.740805
PandaTrj/CI.A
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
TrendMicro-HouseCallTROJ_GEN.R067C0WEP20
TencentWin32.Trojan-downloader.Upatre.Pavv
SentinelOneDFI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/QQWare.A!tr
BitDefenderThetaGen:NN.ZexaF.34132.@FZbaiCtfApb
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Generic/Trojan.04c

How to remove Graftor.740805?

Graftor.740805 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment