Malware

Graftor.854133 removal tips

Malware Removal

The Graftor.854133 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.854133 virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Executable code extraction
  • Injection with CreateRemoteThread in a remote process
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Graftor.854133?


File Info:

crc32: E2448A51
md5: da071169c5d23df35a0454f53bd53f26
name: DA071169C5D23DF35A0454F53BD53F26.mlw
sha1: eaca15e07000e58061c6a24558ff59ea6728a9a4
sha256: 2cd90fecf4222117ecf6478b1ead6bfa0d059303949f0cd91654b9b92d78ec09
sha512: 28a813b9391e68d81da4903b5ea567ff06fc2bd920175f832050c9592dc418c891051c8ec26d816acbca0a1c8807b8fe62a5efd517674a10a561f30e3bdd0666
ssdeep: 24576:j9q5xzW2Yck4oITR7YcddMaCyQJynnBJHPAj9KUoOYzIo9ULq3:jMtW7j9WldSJcf4hKUoOY0uULq3
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Co90b324p.
InternalName:
FileVersion: 59845t6
CompanyName: vytrtr
LegalTrademarks:
Comments:
ProductName:
ProductVersion: 817656
FileDescription:
OriginalFilename:
Translation: 0x0409 0x04e4

Graftor.854133 also known as:

BkavW32.AIDetectVM.malware1
DrWebBackDoor.SpyBotNET.25
MicroWorld-eScanGen:Variant.Graftor.854133
FireEyeGeneric.mg.da071169c5d23df3
CAT-QuickHealTrojan.DriveHide.VN8
McAfeeFareit-FZN!DA071169C5D2
SangforMalware
BitDefenderGen:Variant.Graftor.854133
Cybereasonmalicious.9c5d23
BitDefenderThetaAI:Packer.5AEBB01121
SymantecML.Attribute.HighConfidence
ClamAVWin.Dropper.Undefined-6663182-0
RisingTrojan.Injector!1.CDB7 (CLASSIC)
Ad-AwareGen:Variant.Graftor.854133
EmsisoftGen:Variant.Graftor.854133 (B)
InvinceaML/PE-A + Troj/Agent-AJFK
McAfee-GW-EditionBehavesLike.Win32.Dropper.tc
SophosTroj/Agent-AJFK
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
MicrosoftPWS:Win32/Fareit!ml
GDataWin32.Trojan.PSE.1QAU741
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Injector.R354305
VBA32TScope.Trojan.Delf
ALYacGen:Variant.Graftor.854133
MAXmalware (ai score=86)
MalwarebytesTrojan.MalPack.DLF
APEXMalicious
ESET-NOD32a variant of Win32/GenKryptik.EWDK
IkarusTrojan.Inject
eGambitUnsafe.AI_Score_92%
FortinetW32/Injector.ENSD!tr
AVGWin32:PWSX-gen [Trj]

How to remove Graftor.854133?

Graftor.854133 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment