Malware

Graftor.835980 removal instruction

Malware Removal

The Graftor.835980 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.835980 virus can do?

  • At least one process apparently crashed during execution
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Graftor.835980?


File Info:

name: 2E3FA1CFA6051E288D05.mlw
path: /opt/CAPEv2/storage/binaries/806f1de3ef8f55f5c020fd512978993230368fc6c42c8a7ace6d706c6983fc1c
crc32: 3A38441B
md5: 2e3fa1cfa6051e288d05171bcc1d777e
sha1: c72b7f5494878b8f23dfd303ac9c4f77d113b2ce
sha256: 806f1de3ef8f55f5c020fd512978993230368fc6c42c8a7ace6d706c6983fc1c
sha512: 56eba3974dfedc65d2d43a847730b0950e4a7d87620f47a907bc9e3050b7f23df79d194079c4c9803824d22d12eac3cfb3f7b4516320e1f7b24e0a2e9a30cb0b
ssdeep: 49152:HfE6jOA3VZpwZQL1YT8pB9FzGjg3eTi1KiVyRdORdCwl90iLscu17GsdRogj/Pxr:HLO8OQZYT8J3IiN8RoRoiQc277TxfQO
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15EF522B07600B764EEE376B724DC3F471F50642FA2C95E5DBD6CAA50E0BA25E04C7682
sha3_384: ac3d46840eadf9605b55113b63df86505ef119a04d66f69945b2f8c425da49fc59af83a235d0cf78e7a561c298dfccb4
ep_bytes: 558d6c249881ec0c02000056e9d0efff
timestamp: 2021-11-23 12:58:45

Version Info:

0: [No Data]

Graftor.835980 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Graftor.835980
CAT-QuickHealTrojan.Wacatac.S15862760
ALYacGen:Variant.Graftor.835980
CylanceUnsafe
K7AntiVirusTrojan ( 0056cc351 )
K7GWTrojan ( 0056cc351 )
Cybereasonmalicious.fa6051
CyrenW32/S-0cb2f1a4!Eldorado
ESET-NOD32a variant of Win32/Kryptik.GOGM
APEXMalicious
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Graftor.835980
NANO-AntivirusVirus.Win32.Gen.ccmw
AvastWin32:TrojanX-gen [Trj]
RisingMalware.Heuristic!ET#100% (RDMK:cmRtazr1YEwfRdSFhwoIRzickMsG)
Ad-AwareGen:Variant.Graftor.835980
SophosML/PE-A + Troj/AGent-BFHO
DrWebTrojan.PackedENT.124
McAfee-GW-EditionBehavesLike.Win32.Generic.wc
FireEyeGeneric.mg.2e3fa1cfa6051e28
EmsisoftGen:Variant.Graftor.835980 (B)
IkarusTrojan.Win32.Crypt
GDataGen:Variant.Graftor.835980
AviraTR/Crypt.EPACK.Gen2
Antiy-AVLTrojan/Generic.ASBOL.C639
ArcabitTrojan.Graftor.DCC18C
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Kryptik.R346633
McAfeeGenericRXIP-KU!2E3FA1CFA605
MAXmalware (ai score=87)
VBA32BScope.Trojan.PackedENT
MalwarebytesTrojan.Crypt.Generic
eGambitUnsafe.AI_Score_93%
FortinetW32/Kryptik.GOGM!tr
BitDefenderThetaAI:Packer.DDEE35311E
AVGWin32:TrojanX-gen [Trj]
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_80% (D)

How to remove Graftor.835980?

Graftor.835980 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment