Malware

Graftor.560113 malicious file

Malware Removal

The Graftor.560113 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.560113 virus can do?

  • Presents an Authenticode digital signature
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz

How to determine Graftor.560113?


File Info:

crc32: E8A93C27
md5: c7ad5159f507a6c365cc1a66037c9d10
name: C7AD5159F507A6C365CC1A66037C9D10.mlw
sha1: f63daee20189e9cecb219cca85ea5bae2abd9f9e
sha256: d7122616ea56483b4f705e3608fa6c53806dfa73f228ce02f0bef279f8f5198a
sha512: 5cb9fd6d11c00abfa53e80255cb36d353c4d8d68a989af7dd32cbccc6771327a5acdb0f7b3607c48261dc015becedbb3ae35f7b3a3328a857dd97a21aaf84c86
ssdeep: 12288:tAwSfxL/2Dc3jDLLmt0LDQewsAjRSEZd/PI49rNDS5lSZAwSfxL/2Dc3jDLLmt0d:eaewsAjb/DrNDS5lSKaewsAju
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2014 Microsoft Corporation
InternalName: mavinject32
FileVersion: 5.0.10348.0
CompanyName: Microsoft Corporation
PrivateBuild: 50sp3Servicing (by sftbuild on MBAMR02BLD01)
LegalTrademarks: Microsoftxae is a registered trademark of Microsoft Corporation.
ProductName: Microsoft Application Virtualization (App-V)
ProductVersion: 5.0.10348.0
FileDescription: mavinject32
OriginalFilename: mavinject32.exe
Translation: 0x0409 0x04b0

Graftor.560113 also known as:

Elasticmalicious (high confidence)
DrWebWin32.HLLW.Autoruner.547
CynetMalicious (score: 100)
ALYacGen:Variant.Graftor.560113
SangforTrojan.Win32.Save.a
Cybereasonmalicious.9f507a
BaiduWin32.Trojan.VB.t
CyrenW32/Emotet.BBS.gen!Eldorado
SymantecML.Attribute.HighConfidence
AvastWin32:VB-FBX
ClamAVWin.Ransomware.WannaCry-9856297-0
BitDefenderGen:Variant.Graftor.560113
MicroWorld-eScanGen:Variant.Graftor.560113
F-SecureHeuristic.HEUR/AGEN.1141982
BitDefenderThetaGen:NN.ZexaF.34170.duW@aCJ4XDc
McAfee-GW-EditionBehavesLike.Win32.Suspect.dh
FireEyeGen:Variant.Graftor.560113
EmsisoftGen:Variant.Graftor.560113 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1141982
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Graftor.D88BF1
GDataGen:Variant.Graftor.560113
McAfeeArtemis!C7AD5159F507
MAXmalware (ai score=85)
VBA32Trojan.Downloader
MalwarebytesVB.Virus.FileInfector.DDS
PandaTrj/Genetic.gen
IkarusTrojan.Win32
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.1D67!tr
AVGWin32:VB-FBX

How to remove Graftor.560113?

Graftor.560113 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment