Malware

What is “Graftor.693592”?

Malware Removal

The Graftor.693592 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.693592 virus can do?

  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)

How to determine Graftor.693592?


File Info:

crc32: F1A3E796
md5: eda73abf0774d34ee95990c8485de7b3
name: EDA73ABF0774D34EE95990C8485DE7B3.mlw
sha1: afc7aeba966b325d4b078e98ae9d73fdb48b64c2
sha256: 0dbe20a519221fb8f30425d06969417483e339ad3220b53a8d8534b04e867a68
sha512: 15e4423c6a3e76fc2b6df0b95bf01ae724e9263747d274f174d25e7b8ba84304bb14fc7599c30dafe77a3fe52e144db50f1a5c32795273db193ea614385f3e3f
ssdeep: 3072:Ek6JzOZDK2IIXtnyTzk6FCLqJEWn9QQAQM4YeI6oPCQD0t+e/D3yxW:rRK2IIXtxeJEU9QdQY+0bxW
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x7248x6743x6240x6709 (C) 2019
InternalName: elm
FileVersion: 1, 0, 0, 1
CompanyName:
PrivateBuild:
LegalTrademarks:
Comments:
ProductName: elmDynamic Link Library
OLESelfRegister:
SpecialBuild:
ProductVersion: 1, 0, 0, 1
FileDescription: elm
OriginalFilename: nw_elfDLL.DLL
Translation: 0x0804 0x04b0

Graftor.693592 also known as:

Elasticmalicious (high confidence)
ALYacGen:Variant.Graftor.693592
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Farfli.CML
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
BitDefenderGen:Variant.Graftor.693592
MicroWorld-eScanGen:Variant.Graftor.693592
Ad-AwareGen:Variant.Graftor.693592
ComodoTrojWare.Win32.Kryptik.ATA@4na219
BitDefenderThetaGen:NN.ZedlaF.34678.lq8@a4xjMXcj
McAfee-GW-EditionGenericRXNR-BX!EDA73ABF0774
FireEyeGen:Variant.Graftor.693592
EmsisoftGen:Variant.Graftor.693592 (B)
SentinelOneStatic AI – Suspicious PE
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Graftor.DA9558
GDataGen:Variant.Graftor.693592
AhnLab-V3Malware/Win32.Generic.C4332621
McAfeeGenericRXNR-BX!EDA73ABF0774
MAXmalware (ai score=81)
MalwarebytesMalware.Heuristic.1003
RisingTrojan.Farfli!8.FF (TFE:dGZlOgXqj475IHJqkg)
YandexTrojan.GenAsa!NbrJuFQw6Do
IkarusTrojan.Win32.Farfli
AVGWin32:TrojanX-gen [Trj]
Qihoo-360HEUR/QVM27.0.9BA7.Malware.Gen

How to remove Graftor.693592?

Graftor.693592 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment