Malware

Graftor.527204 removal

Malware Removal

The Graftor.527204 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.527204 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
trick.matchoatmeal.icu
fuss.wavesfork.online
a.tomx.xyz

How to determine Graftor.527204?


File Info:

crc32: 9A1DC3BB
md5: 51c60498cb0c6fdaf6401c3d3dfd465f
name: 51C60498CB0C6FDAF6401C3D3DFD465F.mlw
sha1: 8339a06aa006dfe95d3358ab3575260a1c3faf39
sha256: 1a46c6433edd7efc481efd0ce055ac598b3fa69f5341a57c4cc98b9e06c26269
sha512: 0a5644746daafcd6be5ba3383e11c6adf1277da82aac25cf0bab0d744cd14ebe25e7958cb06bbd3638a7d39c0ee89af3c85ada23100e8752ad0fda82c9ecb0f9
ssdeep: 24576:Pk1p8mKBKHdTB9VbqFxlvdZ/4MnVogmbvgf+8Dle1ZyyzVmINYO:Pk1pP2WfbSTvrFle1ZdF
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9Ralnamu laowybty
InternalName: HAEMOKHEEBLIAT.EXE
FileVersion: 1.10.8.3
CompanyName: xa9Ralnamu laowybty
ProductName: HAEMOKHEEBLIAT
ProductVersion: 1.10.8.3
OriginalFilename: haemokheebliat.exe
Translation: 0x0409 0x04e4

Graftor.527204 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053e4161 )
LionicTrojan.Win32.Zbot.lx9X
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.17867
CynetMalicious (score: 100)
ALYacGen:Variant.Graftor.527204
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaAdWare:Win32/Kryptik.def4ee0a
K7GWTrojan ( 0053e4161 )
Cybereasonmalicious.8cb0c6
CyrenW32/Kryptik.DIF.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HLOA
APEXMalicious
AvastWin32:Adware-gen [Adw]
Kasperskynot-a-virus:HEUR:AdWare.Win32.Generic
BitDefenderGen:Variant.Graftor.527204
NANO-AntivirusRiskware.Win32.DownloadHelper.fjqljx
MicroWorld-eScanGen:Variant.Graftor.527204
TencentMalware.Win32.Gencirc.10cc61c0
Ad-AwareGen:Variant.Graftor.527204
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34236.Lt0@aicc6Sai
McAfee-GW-EditionPacked-FKC!51C60498CB0C
FireEyeGeneric.mg.51c60498cb0c6fda
EmsisoftGen:Variant.Graftor.527204 (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.DownloadHelper.buj
AviraTR/Crypt.ZPACK.Gen2
Antiy-AVLTrojan/Generic.ASMalwS.28C13DF
MicrosoftPWS:Win32/Zbot!ml
GDataGen:Variant.Graftor.527204
AhnLab-V3PUP/Win32.StartSurf.C2799946
McAfeePacked-FKC!51C60498CB0C
MAXmalware (ai score=94)
VBA32BScope.Adware.Prepscram
MalwarebytesAdware.IStartSurf
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.B33C (CLASSIC)
YandexPUA.StartSurf!UtoEHd22xIY
IkarusPUA.Dlhelper
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GIQX!tr
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Graftor.527204?

Graftor.527204 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment