Malware

Graftor.748123 (file analysis)

Malware Removal

The Graftor.748123 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.748123 virus can do?

  • Executable code extraction
  • A process attempted to delay the analysis task.
  • Drops a binary and executes it
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Sniffs keystrokes
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
mrmaxco.com

How to determine Graftor.748123?


File Info:

crc32: 2B947430
md5: 1463509a3a37c4113355d1e3c595bdb2
name: hit.exe
sha1: 1c5a6d3c602e565aa4225f16e7ff07713781f541
sha256: 08e5e9172d1239a98f64cffe93dc047ce74eda12c21e100936927c8664cafe3a
sha512: 1ca830ead775e27b03854f64d4a508326ba48d2d074dc0ebc13f87d0a20bc6a130db6767ae5eb256f23be50b39c14296812c8c3ded8c8e4e9bc82f5d48975a37
ssdeep: 98304:PH8zW/5QT8pIKQoHPBWq5Wgg0+Y5uuzPLax:PHaWx9pHHPBWRBgu4PLax
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Graftor.748123 also known as:

MicroWorld-eScanGen:Variant.Graftor.748123
FireEyeGeneric.mg.1463509a3a37c411
CAT-QuickHealTrojan.Wacatac
CylanceUnsafe
BitDefenderGen:Variant.Graftor.748123
Cybereasonmalicious.c602e5
Invinceaheuristic
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
GDataGen:Variant.Graftor.748123
AlibabaHackTool:Win32/CheatEngine.79c34b07
AegisLabRiskware.Win32.Graftor.1!c
RisingMalware.Heuristic!ET#97% (RDMK:cmRtazoSckjXFxH1/DKiWG0gH9U0)
Ad-AwareGen:Variant.Graftor.748123
SophosGeneric PUA BM (PUA)
ComodoMalware@#tp5yz2jbsta7
VIPRETrojan.Win32.Generic!BT
Trapminemalicious.moderate.ml.score
EmsisoftGen:Variant.Graftor.748123 (B)
MAXmalware (ai score=87)
Antiy-AVLTrojan/Win32.Wacatac
Endgamemalicious (high confidence)
ArcabitTrojan.Graftor.DB6A5B
MicrosoftTrojan:Win32/Occamy.C
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34122.nFWbaKg5Wodi
ESET-NOD32a variant of Win32/HackTool.CheatEngine.AF potentially unsafe
TrendMicro-HouseCallTROJ_GEN.R023H09EK20
YandexRiskware.HackTool!uXrxjwwe0mY
SentinelOneDFI – Suspicious PE
eGambitUnsafe.AI_Score_99%
FortinetRiskware/CheatEngine
AVGFileRepMalware
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Graftor.748123?

Graftor.748123 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment