Malware

Graftor.58125 removal guide

Malware Removal

The Graftor.58125 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.58125 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Graftor.58125?


File Info:

name: 782868FEA2C196C7BAD0.mlw
path: /opt/CAPEv2/storage/binaries/f90aacfd8f6bfcd5af85ad41e8c9b0590dd186537fc588c105fbd85cd78f81f5
crc32: 45611481
md5: 782868fea2c196c7bad09d3299c507e6
sha1: 152d347533144a2539d8fc4e203c69838e7ac548
sha256: f90aacfd8f6bfcd5af85ad41e8c9b0590dd186537fc588c105fbd85cd78f81f5
sha512: b5adba1027750ae90a6c797a451182f5cf1670a5b2db365c4cfd07957d33a0d30f5839315ffb4a03c23e1358d0422165527879f46349c9c9ec69889b0e1639bc
ssdeep: 192:4qjey7FWtfyZ3XaODGytNRFBptP1oynuRgkQdE0Kr4aTiYYVUSGCObPn19d1R1Qj:4gey7qyaYRF114RgkQdE0wZen
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19FE2E91BEE85C8F1C291827C86AE16BAF2B1BEA135E9870B3544FD0F1C715A19531A3D
sha3_384: df3bf9918bfca34f5aece548baf7ae67e6984453bfff14677bd50655167c81efb0f0f9c1eae024d0e5229b70b9a62981
ep_bytes: 558bec6aff6870344000681626400064
timestamp: 2010-08-15 03:03:33

Version Info:

Comments:
CompanyName:
FileDescription:
FileVersion: 1, 0, 0, 1
InternalName: HlInit
LegalCopyright: 版权所有 (C) 2009
LegalTrademarks:
OriginalFilename: HlInit.EXE
PrivateBuild:
ProductName:
ProductVersion: 1, 0, 0, 1
SpecialBuild:
Translation: 0x0804 0x04b0

Graftor.58125 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanGen:Variant.Graftor.58125
FireEyeGeneric.mg.782868fea2c196c7
SkyhighBehavesLike.Win32.Rootkit.nz
ALYacGen:Variant.Graftor.58125
MalwarebytesGeneric.Malware.AI.DDS
ZillyaTrojan.Farfli.Win32.7877
SangforSuspicious.Win32.Save.ins
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Farfli.480da11c
K7GWTrojan ( 0019cec51 )
K7AntiVirusTrojan ( 0019cec51 )
ArcabitTrojan.Graftor.DE30D
BitDefenderThetaGen:NN.ZexaF.36744.cq0@a4MpI8pb
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Farfli.CJ
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Graftor.58125
NANO-AntivirusTrojan.Win32.Inject.zcelh
AvastWin32:Farfli-BK [Trj]
TencentMalware.Win32.Gencirc.13b36c85
EmsisoftGen:Variant.Graftor.58125 (B)
F-SecureTrojan.TR/Farfli.jaklp
DrWebTrojan.DownLoader5.19620
VIPREGen:Variant.Graftor.58125
Trapminemalicious.moderate.ml.score
SophosMal/Generic-S
SentinelOneStatic AI – Suspicious PE
JiangminBackdoor/Inject.ald
WebrootW32.Backdoor.Gen
GoogleDetected
AviraTR/Farfli.jaklp
Antiy-AVLTrojan[Backdoor]/Win32.Torr
Kingsoftmalware.kb.a.1000
XcitiumMalware@#39ualpi1j0cd6
MicrosoftTrojan:Win32/Ditertag.A
ViRobotBackdoor.Win32.A.Inject.61952.D
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Graftor.58125
VaristW32/Injector.DE.gen!Eldorado
AhnLab-V3Backdoor/Win32.Redosdru.R1036
McAfeeArtemis!782868FEA2C1
MAXmalware (ai score=100)
VBA32Backdoor.Inject
Cylanceunsafe
PandaTrj/Chgt.AB
RisingBackdoor.Zegost!8.177 (TFE:5:u8U6wcdQ7VJ)
YandexTrojan.GenAsa!LBpSh5YPbmw
IkarusTrojan.Win32.Redosdru
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Injector.WZH!tr
AVGWin32:Farfli-BK [Trj]
Cybereasonmalicious.533144
DeepInstinctMALICIOUS

How to remove Graftor.58125?

Graftor.58125 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment