Malware

How to remove “Graftor.84278”?

Malware Removal

The Graftor.84278 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.84278 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Checks for the presence of known windows from debuggers and forensic tools
  • Network activity detected but not expressed in API logs
  • Checks for the presence of known devices from debuggers and forensic tools

How to determine Graftor.84278?


File Info:

crc32: 3A452749
md5: 310ae8279b56395098603011f1482a67
name: 310AE8279B56395098603011F1482A67.mlw
sha1: 9a75d11ecce49c6dbdde73c0bedeeafbcb4c265d
sha256: 59c4b454421afc13d0f6019a82c0c43531fb3c0bf4ab47f2e872877aee4bd8a9
sha512: e4d1b5845b02b55d7bb9751e30576cbc96203c0b5f2654a886994b537db4cdff898ff3bc716c84aa4b9753192ea29a18eb773b037f988f3df96095aef727e1ad
ssdeep: 24576:gzXUQFurb8R3Pfrx7Dc4Eb2FZliiCQrQ/rfFbWLc2oqCBVJANwglxs2s3:QUqjZU8Zl5CT/LFzqCaPM2
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x7248x6743x6240x6709 (C) 2013 x730ex4ebax5de5x4f5cx5ba4
FileVersion: 1.0.0.0
CompanyName: x730ex4eba
Comments: QQ 904098169
ProductName: x8d85x7ea7x6587x4ef6x6346x7ed1x5668
ProductVersion: 1.0.0.0
FileDescription: x6587x4ef6x6346x7ed1x5668
Translation: 0x0804 0x04b0

Graftor.84278 also known as:

MicroWorld-eScanGen:Variant.Graftor.84278
McAfeeArtemis!310AE8279B56
VIPRETrojan-Dropper.Win32.Resdro.b (v) (not malicious)
AegisLabDangerousObject.Multi.Generic!c
K7GWTrojan ( 001e15121 )
K7AntiVirusTrojan ( 001e15121 )
TrendMicroTROJ_GEN.R014C0RIN17
BaiduWin32.Trojan.WisdomEyes.16070401.9500.9905
SymantecSecurityRisk.gen1
TotalDefenseWin32/Etap
TrendMicro-HouseCallTROJ_GEN.R014C0RIN17
AvastWin32:Malware-gen
GDataGen:Variant.Graftor.84278
KasperskyHEUR:Trojan.Win32.Agent.gen
BitDefenderGen:Variant.Graftor.84278
NANO-AntivirusTrojan.Win32.Clicker.cvwujd
Endgamemalicious (high confidence)
EmsisoftGen:Variant.Graftor.84278 (B)
ComodoUnclassifiedMalware
F-SecurePacked:W32/PeCan.A
DrWebTrojan.Click2.12845
ZillyaTrojan.Black.Win32.29849
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
SophosMal/EncPk-ANJ
IkarusBackdoor.Win32.Zegost
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.SGeneric
ArcabitTrojan.Graftor.D14936
ZoneAlarmHEUR:Trojan.Win32.Agent.gen
ALYacGen:Variant.Graftor.84278
MAXmalware (ai score=88)
Ad-AwareGen:Variant.Graftor.84278
CylanceUnsafe
PandaTrj/CI.A
AVwareTrojan-Dropper.Win32.Resdro.b (v)
ESET-NOD32a variant of Win32/FlyStudio.Packed.W potentially unwanted
TencentWin32.Trojan.Crypt.Lfgc
SentinelOnestatic engine – malicious
AVGWin32:Malware-gen
Cybereasonmalicious.1b8fb7
Paloaltogeneric.ml
CrowdStrikemalicious_confidence_90% (D)
Qihoo-360Win32/Trojan.03f

How to remove Graftor.84278?

Graftor.84278 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment