Malware

Graftor.529137 removal instruction

Malware Removal

The Graftor.529137 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.529137 virus can do?

  • Sample contains Overlay data
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Graftor.529137?


File Info:

name: F5F50200406275935859.mlw
path: /opt/CAPEv2/storage/binaries/c4f0b674ae27730f578cb36a1ec80826b7950b26da6d04ba9c77072e121259d6
crc32: B9B25093
md5: f5f50200406275935859dc4112a3ea3a
sha1: b0ee3b63ecde334fa12e860ac863b5d44cc18950
sha256: c4f0b674ae27730f578cb36a1ec80826b7950b26da6d04ba9c77072e121259d6
sha512: 9709039c8dcf29f999f16dd9d2dd62aec4b34f6838ce6f72ac2445da6b168da838720d129eff76baf07e6f3b8aa7988505f37d68d8cd9f61ca6187578c99a7fc
ssdeep: 3072:q/xX8rPLBWGbEItUcP0K03fDLEyW2dhqgynd3:qpXwPLBFbEItUohwEyRh3yd3
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14F342997A686D5C3D34108301CBD677686B7F86E8B349F67A398DE2D34173807C2631A
sha3_384: f33dc8aa94f07551fa80e46b59584a834da418f8d39a8cea99f9e6eb9b83c061bf3def2d523ae5d18573854cb6783ddc
ep_bytes: 558bec6aff68b817410068b4d7400064
timestamp: 2023-08-18 21:53:54

Version Info:

Comments:
CompanyName: 腾讯计算机系统有限公司
FileDescription: 腾讯游戏登录程序
FileVersion: 3, 0, 14, 14
InternalName:
LegalCopyright: Copyright (C) Tencent 2010 - 2023
LegalTrademarks:
OriginalFilename: Client.exe
PrivateBuild:
ProductName: 腾讯游戏统一登录系统
ProductVersion: 3, 0, 14, 14
SpecialBuild:
Translation: 0x0804 0x04b0

Graftor.529137 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Graftor.4!c
MicroWorld-eScanGen:Variant.Graftor.529137
FireEyeGen:Variant.Graftor.529137
SkyhighArtemis
McAfeeArtemis!F5F502004062
MalwarebytesTrojan.Injector
SangforTrojan.Win32.Agent.V6hv
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaBackdoor:Win32/Farfli.1072927a
K7GWTrojan ( 0050a04c1 )
K7AntiVirusTrojan ( 0050a04c1 )
ArcabitTrojan.Graftor.D812F1
BitDefenderThetaGen:NN.ZexaF.36792.oy1@aiKqsRbb
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Injector.DNBT
APEXMalicious
CynetMalicious (score: 100)
BitDefenderGen:Variant.Graftor.529137
AvastWin32:InjectorX-gen [Trj]
TencentMalware.Win32.Gencirc.13f5e11d
EmsisoftGen:Variant.Graftor.529137 (B)
F-SecureHeuristic.HEUR/AGEN.1325163
VIPREGen:Variant.Graftor.529137
TrendMicroTROJ_GEN.R011C0DHM23
SophosMal/Generic-S
IkarusTrojan.Win32.Injector
GoogleDetected
AviraHEUR/AGEN.1325163
MAXmalware (ai score=88)
Antiy-AVLTrojan/Win32.Injector
MicrosoftBackdoor:Win32/Farfli.BG!MTB
GDataGen:Variant.Graftor.529137
AhnLab-V3Backdoor/Win.Farfli.C5481002
ALYacGen:Variant.Graftor.529137
VBA32BScope.Trojan.Wacatac
Cylanceunsafe
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R011C0DHM23
RisingTrojan.Kryptik!1.AAD1 (CLASSIC)
MaxSecureTrojan.Malware.73926614.susgen
FortinetW32/DNBT!tr
AVGWin32:InjectorX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Graftor.529137?

Graftor.529137 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment