Malware

Graftor.763674 information

Malware Removal

The Graftor.763674 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.763674 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Sniffs keystrokes
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Creates a copy of itself

How to determine Graftor.763674?


File Info:

crc32: 9053CBEE
md5: 8ec3199564f8a161ff9deb15bb7b3419
name: 8EC3199564F8A161FF9DEB15BB7B3419.mlw
sha1: 9af966963705f67086ee9749530e30fa38026d56
sha256: 716faece0723c05c1a8057e96b5b3f18206fdf5589c99b10c5c4f70f04a1cb01
sha512: 16a5c7d554288517c8e588e6a8e9572e11303ba745301c06b384cb62c4cb970731d0d11681ca0b228c13720e7c0fb816fb47f7a76b994c1f187b189c3123e55c
ssdeep: 12288:HwaIOzyiJs8ejj5S/tdVIaPT+3Y12wWVW4:Qa/Di8ejtSPVIaP6I4DVW4
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: (C) 360.cn All Rights Reserved.
InternalName: SoftMgr
FileVersion: 7, 5, 0, 1740
CompanyName: 360.cn
ProductName: 360x8f6fx4ef6x7ba1x5bb6
ProductVersion: 7, 5, 0, 1740
FileDescription: 360x8f6fx4ef6x7ba1x5bb6
OriginalFilename: SoftMgr.exe
Translation: 0x0804 0x04b0

Graftor.763674 also known as:

Elasticmalicious (high confidence)
ClamAVWin.Malware.Deepscan-6824108-0
ALYacGen:Variant.Graftor.763674
CylanceUnsafe
Cybereasonmalicious.564f8a
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/Kryptik.FVMQ
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
KasperskyHEUR:Backdoor.Win32.Farfli.gen
BitDefenderGen:Variant.Graftor.763674
MicroWorld-eScanGen:Variant.Graftor.763674
Ad-AwareGen:Variant.Graftor.763674
BitDefenderThetaGen:NN.ZexaF.34790.vr0@ae5QQqlb
TrendMicroTROJ_GEN.R005C0WG921
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.8ec3199564f8a161
EmsisoftGen:Variant.Graftor.763674 (B)
JiangminHeur:TrojanDropper.TDSS
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Graftor.DBA71A
ZoneAlarmHEUR:Backdoor.Win32.Farfli.gen
GDataGen:Variant.Graftor.763674
McAfeeArtemis!8EC3199564F8
MAXmalware (ai score=86)
VBA32BScope.Backdoor.Farfli
MalwarebytesMalware.AI.3961206459
TrendMicro-HouseCallTROJ_GEN.R005C0WG921
IkarusTrojan.Win32.Injector
FortinetW32/Kryptik.FVMQ!tr
AVGWin32:MalwareX-gen [Trj]

How to remove Graftor.763674?

Graftor.763674 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment