Malware

What is “Graftor.785298”?

Malware Removal

The Graftor.785298 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.785298 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Graftor.785298?


File Info:

crc32: 38394B99
md5: 9d4fc17740740d14a72340d5c9f63a73
name: ch.jpeg
sha1: a7c5a7fae7f04fff6d6b90f112c0bbb2df13a9f4
sha256: 619f965e6d79d69a7a99f826b1113b133dc81445b205f1fa3724d575e965c2b6
sha512: 63b8b6ff45e7299e0b1e2392c5fecb869555cd2dc2d1790ceca96fd9778622c522fb2834318f3717d1e2aa47f04b22ea52e2ad6ad31e771a2b0cea64afe2ec9d
ssdeep: 24576:ANA3R5drXPrf/hamnYoia5z16qrh4bXG0RegKECYkev:55jom9hz13tWjRegWY
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Graftor.785298 also known as:

MicroWorld-eScanGen:Variant.Graftor.785298
BitDefenderGen:Variant.Graftor.785298
ArcabitTrojan.Graftor.DBFB92
TrendMicroTROJ_FRS.0NA104FT20
CyrenW32/Trojan.PRJH-1337
ESET-NOD32a variant of Win32/Injector.EMNC
APEXMalicious
KasperskyHEUR:Exploit.Win32.BypassUAC.gen
EmsisoftGen:Variant.Graftor.785298 (B)
F-SecureTrojan.TR/Injector.cevlj
DrWebTrojan.Siggen9.56402
Invinceaheuristic
FortinetW32/GenKryptik.EKLE!tr
FireEyeGeneric.mg.9d4fc17740740d14
IkarusTrojan.Win32.Injector
AviraCdrbjxe.exe
MAXmalware (ai score=87)
Antiy-AVLTrojan[Exploit]/Win32.BypassUAC
Endgamemalicious (high confidence)
MicrosoftTrojan:Win32/Wacatac.D6!ml
ZoneAlarmHEUR:Exploit.Win32.BypassUAC.gen
BitDefenderThetaGen:NN.ZelphiF.34130.@GW@aOfamDki
VBA32BScope.Backdoor.Remcos
ZonerTrojan.Win32.91048
TrendMicro-HouseCallTROJ_FRS.0NA104FT20
RisingTrojan.Kryptik!1.C56D (CLOUD)
MaxSecureTrojan.Malware.300983.susgen
GDataGen:Variant.Graftor.785298
AVGWin32:RansomX-gen [Ransom]
AvastWin32:RansomX-gen [Ransom]

How to remove Graftor.785298?

Graftor.785298 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment