Malware

What is “Graftor.75196”?

Malware Removal

The Graftor.75196 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.75196 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Graftor.75196?


File Info:

name: A7F205738EC157D7752E.mlw
path: /opt/CAPEv2/storage/binaries/ee4d463556238484bb7fa0c9bbacd29a7419392a358e898371488e6a3b28366d
crc32: CB8B145B
md5: a7f205738ec157d7752e0a7aae38a88b
sha1: ba7f52f572495d2e694c0a529c9ac8a30af46d70
sha256: ee4d463556238484bb7fa0c9bbacd29a7419392a358e898371488e6a3b28366d
sha512: 301319b9fee308bcc7eb93e90a1f4014ae9e6489e707615e8cd184f893b1bb0500b53c1c38096be87665d8dd7d54740040372788591c55e23e333450c0f6371f
ssdeep: 768:zpZ1p/ija+1I2RDs26/oZ9qjoKsA4/mCvfgWeG8Yhc1YPvMTub2/n:zpZO4Abqnmfg3G8KcuMuEn
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17E23CF62D9E1C879E93082F5490685A9BBFF6E73D81095FF49AABC2D8CF5398244C046
sha3_384: f7a3f2c8f9492a196e7846a9e91de554ff7d56ea987766036c19663fc8bbe6d4ee70ea5c74c538168ecf37b6836eacaa
ep_bytes: 558becb9050000006a006a004975f953
timestamp: 2009-09-22 01:20:03

Version Info:

0: [No Data]

Graftor.75196 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Bifrose.m!c
MicroWorld-eScanGen:Variant.Graftor.75196
FireEyeGeneric.mg.a7f205738ec157d7
ALYacGen:Variant.Graftor.75196
CylanceUnsafe
ZillyaBackdoor.Bifrose.Win32.30313
AlibabaTrojanDropper:Win32/Injector.944ae477
Cybereasonmalicious.38ec15
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Injector.AVG
APEXMalicious
ClamAVWin.Trojan.Bifrose-25935
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Graftor.75196
NANO-AntivirusTrojan.Win32.Bifrose.cyzxg
AvastFileRepMalware [Misc]
TencentMalware.Win32.Gencirc.116d928a
Ad-AwareGen:Variant.Graftor.75196
SophosMal/Generic-S
ComodoMalware@#30v94u1geahql
DrWebBackDoor.Bifrost.25199
VIPREGen:Variant.Graftor.75196
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.ph
Trapminemalicious.moderate.ml.score
EmsisoftGen:Variant.Graftor.75196 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Graftor.75196
JiangminBackdoor/Bifrose.sau
WebrootW32.Backdoor.Gen
GoogleDetected
AviraDR/Delphi.Gen
Antiy-AVLTrojan/Generic.ASMalwS.330C
ArcabitTrojan.Graftor.D125BC
MicrosoftBackdoor:Win32/Trenk!rts
CynetMalicious (score: 100)
McAfeeGenericRXKZ-UK!A7F205738EC1
MAXmalware (ai score=100)
VBA32Trojan.VB.Decr
RisingTrojan.Occamy!8.F1CD (TFE:4:T6Qog8Rn4vC)
IkarusTrojan.Win32.Inject
MaxSecureTrojan.Malware.978074.susgen
FortinetW32/Dx.PZW!tr
BitDefenderThetaAI:Packer.6C139AFE1C
AVGFileRepMalware [Misc]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Graftor.75196?

Graftor.75196 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment