Malware

Should I remove “Application.Graftor.974773”?

Malware Removal

The Application.Graftor.974773 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Graftor.974773 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Application.Graftor.974773?


File Info:

name: D0DB75C6561491D64550.mlw
path: /opt/CAPEv2/storage/binaries/b5fa472e27a0529365a5f06880e54649e3451991dca0539b022409aab18f13e7
crc32: 0032221B
md5: d0db75c6561491d64550ff6563b9b92b
sha1: b8f42446556877320f9ce9941e8d873806edb9a4
sha256: b5fa472e27a0529365a5f06880e54649e3451991dca0539b022409aab18f13e7
sha512: 02d47640a4d709f3ed4d0934d3f8eb55803d83c53df205a106df4d1d4ddf3a2286bd9646bb49f85b24a3b3824d9eaffc7eb6c2d790f2e5edce88dbd0b4f9ef7c
ssdeep: 12288:sygCbuPx0GcUayHmEA5nOh5o2vEZVrBVXx2/XsX3Nh7uspd:s9Z7mEA5nOfo2vaSsX37ispd
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A5D47C307AD2C07BD2B325318878C2A51565BD616F7182CF72C42F2FDD386D29A35BA6
sha3_384: 814fe511c317ad75439a6a8affd8bc68deba54b3f0b7b4ec64b5c32d6727c57be9a3ef2f2a24d70fbbff922f5597f325
ep_bytes: 60be00d050008dbe0040efffc787a461
timestamp: 2021-11-11 11:21:42

Version Info:

FileDescription: _
FileVersion: 6.0.0.1111
InternalName: SEM智能下载器.exe
LegalCopyright: Copyright (C) 2021
OriginalFilename: SEM智能下载器.exe
ProductName: SEM智能下载器.exe
Translation: 0x0804 0x04b0

Application.Graftor.974773 also known as:

Elasticmalicious (moderate confidence)
MicroWorld-eScanGen:Variant.Application.Graftor.974773
FireEyeGeneric.mg.d0db75c6561491d6
ALYacGen:Variant.Application.Graftor.974773
MalwarebytesPUP.Optional.ChinAd
SangforTrojan.Win32.Save.a
CrowdStrikewin/grayware_confidence_90% (D)
BitDefenderThetaGen:NN.ZexaF.36250.Nm0@amKFZsnj
CyrenW32/Qjwmonkey.L.gen!Eldorado
SymantecML.Attribute.HighConfidence
CynetMalicious (score: 100)
BitDefenderGen:Variant.Application.Graftor.974773
RisingAdware.Downloader!1.D5C8 (CLASSIC)
VIPREGen:Variant.Application.Graftor.974773
McAfee-GW-EditionBehavesLike.Win32.RealProtect.jm
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Suspicious PE
GDataGen:Variant.Application.Graftor.974773
Antiy-AVLGrayWare[AdWare]/Win32.Qjwmonkey
ArcabitTrojan.Application.Graftor.DEDFB5
GoogleDetected
AhnLab-V3PUP/Win.Qjwmonkey.R465018
McAfeeArtemis!D0DB75C65614
MAXmalware (ai score=72)
DeepInstinctMALICIOUS
Cylanceunsafe
TencentAdware.Win32.Downloader.16000011
IkarusBHO.Win32.Qiwmonk
MaxSecureTrojan.Malware.121218.susgen
Cybereasonmalicious.656149

How to remove Application.Graftor.974773?

Application.Graftor.974773 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment