Malware

Should I remove “Graftor.292944”?

Malware Removal

The Graftor.292944 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.292944 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Graftor.292944?


File Info:

name: 70528FE60F80F2D01E7E.mlw
path: /opt/CAPEv2/storage/binaries/7641f56943a937af389259f7b49f31cceb65d33761f1d43ecf0b0824e5ddcb62
crc32: 018C91D7
md5: 70528fe60f80f2d01e7efa4ce0424f5e
sha1: a7e1dfe176d138f4f2a16ca93ba3f5dfd72b7da9
sha256: 7641f56943a937af389259f7b49f31cceb65d33761f1d43ecf0b0824e5ddcb62
sha512: 551d4f22034087222839a1853eca9b20dd27fe7206fa117aec419cee66e3f76d330059032c1445e474fc947e59081bf8c2fe4409c32bba837d450f41111e6b1d
ssdeep: 24576:a6Jjwv6ShzAvGafNVU7x8oQGMNa9xd4pS:N6SShy1V3oQGmaac
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A81523B2F205D548D68BC93A856EDC29A86A7CDDDCD31E0D61E8727A08733E70245E1F
sha3_384: 394289dc74612fb195f46abb44eec221c5b9de05bae545049ca48f49946a232cf1e02c4877985e9db4ff59694adf45be
ep_bytes: 38c1f8058d0402668985b00100008b44
timestamp: 2014-05-07 23:13:04

Version Info:

0: [No Data]

Graftor.292944 also known as:

BkavW32.AIDetect.malware2
MicroWorld-eScanGen:Variant.Graftor.292944
FireEyeGen:Variant.Graftor.292944
McAfeeArtemis!70528FE60F80
CylanceUnsafe
AlibabaTrojan:Win32/Frethog.17e3ee35
Cybereasonmalicious.60f80f
CyrenW32/S-d2f308c6!Eldorado
SymantecTrojan.Gen.2
APEXMalicious
BitDefenderGen:Variant.Graftor.292944
AvastWin32:Malware-gen
Ad-AwareGen:Variant.Graftor.292944
SophosMal/Generic-R + Mal/Frethog-B
ComodoPacked.Win32.MUPX.Gen@24tbus
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0RL521
McAfee-GW-EditionBehavesLike.Win32.BadFile.cc
EmsisoftGen:Variant.Graftor.292944 (B)
SentinelOneStatic AI – Malicious PE
WebrootPua.Downloadmanager.Gen
Antiy-AVLTrojan/Generic.ASMalwS.A2E257
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Graftor.292944
CynetMalicious (score: 100)
BitDefenderThetaGen:NN.ZexaF.34062.3mX@aqn05Jh
ALYacGen:Variant.Graftor.292944
MAXmalware (ai score=80)
TrendMicro-HouseCallTROJ_GEN.R002C0RL521
IkarusWin32.Kazy
FortinetW32/Frethog.B!tr
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Graftor.292944?

Graftor.292944 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment