Malware

How to remove “Graftor.145166”?

Malware Removal

The Graftor.145166 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.145166 virus can do?

  • Creates RWX memory
  • Unconventionial language used in binary resources: Portuguese (Brazilian)
  • The binary likely contains encrypted or compressed data.
  • Makes SMTP requests, possibly sending spam or exfiltrating data.

Related domains:

z.whorecord.xyz
a.tomx.xyz
smtps.uol.com.br

How to determine Graftor.145166?


File Info:

crc32: 4FFAE79D
md5: 78a852152253fa05a8ff0ebaf36a198e
name: 78A852152253FA05A8FF0EBAF36A198E.mlw
sha1: f7a0ad09636d2c0049833b96b924d242c08e2c27
sha256: 09769de001bf04c741a6a28af74bc4c50e56f253c21e399dc184ea18b7b31e68
sha512: ec8bd91e61f03922fedb9e4f51b2cbae4275435af386a5d85eaa9f0b56fbe650a714b441b8d73c8130615fb524e69258f4f813572ccc6e8fae5692b0b34a1b8e
ssdeep: 12288:5d1sVKwFoPx/O58VsabYPb3EjZMn2oQPCV5KTa05wrRkUbIU0MLtewovS+7etNr:BssvhLx5jZMn2oQcf05wr/kUpQ3qtv
type: MS-DOS executable, MZ for MS-DOS

Version Info:

0: [No Data]

Graftor.145166 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
ALYacGen:Variant.Graftor.145166
CylanceUnsafe
SangforSpyware.Win32.Banbra.8
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaTrojanSpy:Win32/Banbra.9c054d0a
K7GWSpyware ( 00496dae1 )
K7AntiVirusSpyware ( 00496dae1 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Spy.Banbra.OKD
APEXMalicious
AvastFileRepMalware
CynetMalicious (score: 100)
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Graftor.145166
NANO-AntivirusTrojan.Win32.Graftor.daezyp
MicroWorld-eScanGen:Variant.Graftor.145166
TencentWin32.Trojan.Graftor.Ajlw
Ad-AwareGen:Variant.Graftor.145166
SophosMal/Generic-S
ComodoTrojWare.Win32.Trojan.Banker.~d08@1okg8n
BitDefenderThetaAI:Packer.B7DAB01D21
VIPREInfostealer.Bancos
McAfee-GW-EditionBehavesLike.Win32.Dropper.bc
FireEyeGeneric.mg.78a852152253fa05
EmsisoftGen:Variant.Graftor.145166 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Adware.Mediaget.Gen
AviraHEUR/AGEN.1119294
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.B7BA79
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Occamy.C09
ArcabitTrojan.Graftor.D2370E
GDataGen:Variant.Graftor.145166
AhnLab-V3Spyware/Win32.Bancos.C2606673
McAfeeArtemis!78A852152253
MAXmalware (ai score=89)
VBA32TScope.Trojan.Delf
PandaTrj/CI.A
YandexTrojan.GenAsa!yzks457Aj/U
IkarusTrojan-Downloader.Win32.Banload
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Banbra.OKD!tr.spy
AVGFileRepMalware

How to remove Graftor.145166?

Graftor.145166 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment