Malware

Graftor.839958 removal guide

Malware Removal

The Graftor.839958 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.839958 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs

How to determine Graftor.839958?


File Info:

crc32: DDB81ED6
md5: 41b2b836eb0a54f830470e94e0592cb2
name: 41B2B836EB0A54F830470E94E0592CB2.mlw
sha1: a4b19504bd092022dfcfee05c8d4636004956c15
sha256: 86897c1f4f4414c21531bde3d9012397b4743c78275b2233c789d626a65bbdb1
sha512: eb796af03b85a67ed300748643e0ab799035e3544c34c50b34883099c107dab9e7b37b9b32f70fa777a532897d4d2b252d963e9068ac3a3475a30b0feea3d854
ssdeep: 24576:8Y6thy2UYpqZN9PblGHJP0MzL9xb9ibbV9x:8YKGPSP0MzPb9ifrx
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x667ax6167x7684x6e90x6cc9x751fx547dx7684x6447x7bee x7248x6743x6240x6709
FileVersion: 2.0.0.0
CompanyName: x667ax6167x7684x6e90x6cc9x751fx547dx7684x6447x7bee
Comments: x672cx7a0bx5e8fx4f7fx7528x6613x8bedx8a00x7f16x5199(http://www.eyuyan.com)
ProductName: x6b63x7248x9a8cx8bc1
ProductVersion: 2.0.0.0
FileDescription: x6613x8bedx8a00x7a0bx5e8f
Translation: 0x0804 0x04b0

Graftor.839958 also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Graftor.839958
CylanceUnsafe
CrowdStrikewin/malicious_confidence_60% (W)
K7GWAdware ( 005071f51 )
Cybereasonmalicious.6eb0a5
CyrenW32/Trojan.FICO-6029
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
AvastWin32:Malware-gen
BitDefenderGen:Variant.Graftor.839958
MicroWorld-eScanGen:Variant.Graftor.839958
Ad-AwareGen:Variant.Graftor.839958
SophosGeneric PUA KE (PUA)
ComodoTrojWare.Win32.Agent.OSCF@5rs7jr
BitDefenderThetaGen:NN.ZexaF.34790.dv0@aOUFgDkb
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.th
FireEyeGeneric.mg.41b2b836eb0a54f8
EmsisoftGen:Variant.Graftor.839958 (B)
SentinelOneStatic AI – Malicious PE
Antiy-AVLTrojan/Generic.ASCommon.FA
MicrosoftTrojan:Win32/Wacatac.A!ml
GridinsoftTrojan.Win32.Gen.bot!i
ArcabitTrojan.Graftor.DCD116
AegisLabTrojan.Win32.Malicious.4!c
GDataWin32.Trojan.PSE.10ZTETZ
McAfeeArtemis!41B2B836EB0A
MAXmalware (ai score=84)
MalwarebytesTrojan.MalPack.FlyStudio
TrendMicro-HouseCallTROJ_GEN.R005H09G121
RisingTrojan.Generic@ML.89 (RDML:pDfR8y4UvZHz52ZneF6gjQ)
FortinetRiskware/Application
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Heur.Generic.HwoCVesA

How to remove Graftor.839958?

Graftor.839958 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment