Malware

Graftor.126105 removal guide

Malware Removal

The Graftor.126105 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.126105 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Graftor.126105?


File Info:

crc32: A198B0F1
md5: 0125090eca06ab2745d9f4daaab25b8d
name: 0125090ECA06AB2745D9F4DAAAB25B8D.mlw
sha1: 5a3c935d82a5ff0546eff51bb2ef21c88198f5b8
sha256: 334a62b998ae2f12ed0ef1beb2378dfecce374e09ce785d53c00ea604fe2bb5f
sha512: 5573cccc3118ed19d72bac5eb38e0b69f21beebdd4405af71a3f23d81329ae1c6a60ebb036223b5eea853ef31ce1e91ce515c659d014161e8e473866b6c692c5
ssdeep: 6144:lD7Wvbh38k+yP4nDWgRAkPMrD2GQn8xID0DMF9ZahNHn:Z7Wvb98kvWR3PY2GLxe0DEZc
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Graftor.126105 also known as:

K7AntiVirusTrojan ( 001e15121 )
MicroWorld-eScanGen:Variant.Graftor.126105
nProtectTrojan-PWS/W32.TokSteal.261345
CAT-QuickHealTrojan.Orsam
ALYacGen:Variant.Graftor.126105
CylanceUnsafe
ZillyaTrojan.TokSteal.Win32.47
CrowdStrikemalicious_confidence_100% (W)
K7GWTrojan ( 001e15121 )
Cybereasonmalicious.1b8fb7
ArcabitTrojan.Graftor.D1EC99
TrendMicroTROJ_SPNR.0BCA13
CyrenW32/Trojan.ZHVY-7455
SymantecTrojan.Gen
ESET-NOD32Win32/Runas.A
TheHackerTrojan/Downloader.FakeAlert.ame
AvastWin32:Trojan-gen
KasperskyTrojan-PSW.Win32.TokSteal.cp
BitDefenderGen:Variant.Graftor.126105
NANO-AntivirusRiskware.Win32.Chur.shine
ViRobotTrojan.Win32.A.PSW-TokSteal.261056
TencentWin32.Trojan-qqpass.Qqrob.Bdt
Endgamemalicious (high confidence)
SophosMal/ResDro-B
ComodoUnclassifiedMalware
F-SecureGen:Variant.Graftor.126105
DrWebTool.Chur.1
VIPRETrojan-Dropper.Win32.Resdro.b (v) (not malicious)
Invinceaheuristic
McAfee-GW-EditionBackDoor-EXZ
EmsisoftGen:Variant.Graftor.126105 (B)
JiangminTrojan/PSW.TokSteal.at
WebrootW32.Malware.Heur
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan[PSW]/Win32.TokSteal
KingsoftWin32.Malware.Heur_Generic.A.(kcloud)
MicrosoftTrojan:Win32/Orsam!rts
Ad-AwareGen:Variant.Graftor.126105
AegisLabTroj.PSW32.W.TokSteal.b!c
ZoneAlarmTrojan-PSW.Win32.TokSteal.cp
GDataGen:Variant.Graftor.126105
TotalDefenseWin32/Etap
McAfeeBackDoor-EXZ
AVwareTrojan-Dropper.Win32.Resdro.b (v)
MAXmalware (ai score=99)
TrendMicro-HouseCallTROJ_SPNR.0BCA13
RisingTrojan.Runas!8.18ED (TFE:2:VgdVA1HMtjI)
YandexTrojan.DL.FakeAlert!nMcqfBwGfvs
IkarusBackdoor.Win32.Zegost
eGambitHackTool.Generic
FortinetW32/TokSteal.A!tr
AVGWin32:Trojan-gen
PandaTrj/CI.A
Qihoo-360Win32/Trojan.b7f

How to remove Graftor.126105?

Graftor.126105 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment