Malware

Graftor.855566 removal

Malware Removal

The Graftor.855566 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.855566 virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Expresses interest in specific running processes
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Executed a process and injected code into it, probably while unpacking
  • Attempts to modify proxy settings
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

Related domains:

enwavegroup.com

How to determine Graftor.855566?


File Info:

crc32: F47FAACC
md5: 56f99ad81dfbc60e941049cf47ff7fc0
name: 56F99AD81DFBC60E941049CF47FF7FC0.mlw
sha1: ad99ba5516fc44891e44e54a6a787ae29e27f33d
sha256: 19a602fd556a518416eb9536b0097bedac02a4aa3f32528b7467285730bc0e55
sha512: 3688503d462f356eaee48c6eb892d506e86339873c67dd99c4ab99b72cc4a600147ab62dc7c7cb8ae434ac64ada12efd249bc0002fd9ec59a4c250062d8be28b
ssdeep: 12288:sMzul/KWVPNnPMevdyQi4jvvaiQyNVxodumVDD5QCW5uiY+Wn:XUKWBCesJ4jNQyTxWdVDD5QbY+I
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Co5234byrtf909p.
InternalName:
FileVersion: 0
CompanyName: Bsd645vtfe C.
LegalTrademarks:
Comments:
ProductName:
ProductVersion: 61523gffgd4s0
FileDescription:
OriginalFilename:
Translation: 0x0409 0x04e4

Graftor.855566 also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Graftor.855566
FireEyeGeneric.mg.56f99ad81dfbc60e
McAfeePWS-FCRZ!56F99AD81DFB
SangforMalware
BitDefenderGen:Variant.Graftor.855566
Cybereasonmalicious.81dfbc
CyrenW32/Delf.MI.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:PWSX-gen [Trj]
Ad-AwareGen:Variant.Graftor.855566
SophosTroj/Agent-AJFK
DrWebTrojan.PWS.Stealer.23680
InvinceaML/PE-A + Troj/Agent-AJFK
McAfee-GW-EditionBehavesLike.Win32.Dropper.bh
EmsisoftTrojan.Formbook (A)
IkarusTrojan.Inject
MaxSecureTrojan.Malware.300983.susgen
MicrosoftPWS:Win32/Fareit!ml
ArcabitTrojan.Graftor.DD0E0E
GDataWin32.Trojan.PSE.1IXIRVW
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Fareit.R355158
BitDefenderThetaGen:NN.ZelphiF.34634.XG0@aG0gYUni
ALYacGen:Variant.Graftor.855566
MAXmalware (ai score=86)
VBA32TScope.Trojan.Delf
MalwarebytesTrojan.Injector
ESET-NOD32a variant of Win32/Injector.ENUC
RisingTrojan.Ymacco!8.11BE1 (TFE:2:bSRtW4lIhOQ)
SentinelOneStatic AI – Suspicious PE
eGambitUnsafe.AI_Score_98%
FortinetW32/Injector.ENUI!tr
AVGWin32:PWSX-gen [Trj]
CrowdStrikewin/malicious_confidence_60% (D)
Qihoo-360HEUR/QVM20.1.3A86.Malware.Gen

How to remove Graftor.855566?

Graftor.855566 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment