Malware

How to remove “Graftor.360906”?

Malware Removal

The Graftor.360906 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.360906 virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Compression (or decompression)
  • Creates RWX memory
  • Reads data out of its own binary image
  • Executed a process and injected code into it, probably while unpacking
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine Graftor.360906?


File Info:

crc32: 365F91D4
md5: afde174aa271a9cc71a83d6eb0af146f
name: AFDE174AA271A9CC71A83D6EB0AF146F.mlw
sha1: 1aed487088746e357848716eb65de17e6789258d
sha256: d49269259cfc36d170ee097430c9407e2e423e5416bb008ddbb5bbc0622704ca
sha512: 85020fc5be1fb513600dc5e5e84b058c48669999a8018677d72da0495d75e73682d12f910e2f772caf4d8ead12cbe95e81f6229faf2d467ca17bc91c2a33f070
ssdeep: 6144:T28A9pWBcw97412+aAQ+JuG1wbJwfwNgrb2qMCwxVfcugdxycWy6ZA:y8GWP41frl1XfwNQ2qMb+yty6ZA
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Graftor.360906 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005088071 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.10464
CynetMalicious (score: 100)
CAT-QuickHealRansom.NSIS.Cerber.C
ALYacGen:Variant.Graftor.360906
CylanceUnsafe
ZillyaTrojan.GenericCryptor.Win32.4738
SangforTrojan.Win32.Generic.ky
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaRansom:Win32/Cerber.ef981c93
K7GWTrojan ( 005088071 )
Cybereasonmalicious.aa271a
SymantecPacked.NSISPacker!g6
ESET-NOD32multiple detections
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Ransomware.Cerber-6992030-0
KasperskyTrojan-Ransom.Win32.GenericCryptor.feu
BitDefenderGen:Variant.Graftor.360906
NANO-AntivirusTrojan.Win32.DMIV.emiegb
MicroWorld-eScanGen:Variant.Graftor.360906
TencentWin32.Trojan.Genericcryptor.Lsck
ComodoMalware@#3no4ek4pb38jv
BitDefenderThetaGen:NN.ZedlaF.34628.lq4@ayIjQPl
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_CERBER.F117CE
FireEyeGeneric.mg.afde174aa271a9cc
EmsisoftTrojan-Ransom.Cerber (A)
SentinelOneStatic AI – Malicious PE
WebrootW32.Ransom.Gen
AviraHEUR/AGEN.1116898
eGambitGeneric.Malware
KingsoftWin32.Troj.GenericKD.v.(kcloud)
MicrosoftRansom:Win32/Cerber!rfn
AegisLabTrojan.Win32.GenericCryptor.j!c
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Graftor.360906
TACHYONRansom/W32.Cerber.285087
AhnLab-V3Trojan/Win32.Cerber.R196649
McAfeeArtemis!AFDE174AA271
MAXmalware (ai score=86)
PandaTrj/CI.A
TrendMicro-HouseCallRansom_CERBER.F117CE
RisingRansom.Cerber!8.3058 (CLOUD)
YandexTrojan.Injector!IcyR//dyY2A
IkarusTrojan.Win32.Filecoder
FortinetW32/Injector.DMIV!tr
AVGWin32:Malware-gen
Qihoo-360Win32/Trojan.Ransom.742

How to remove Graftor.360906?

Graftor.360906 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment