Malware

Graftor.910461 malicious file

Malware Removal

The Graftor.910461 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.910461 virus can do?

  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Graftor.910461?


File Info:

name: CCA30B3F205929A8C680.mlw
path: /opt/CAPEv2/storage/binaries/99bca64ebf7ed2a306bf7a9842fb38d6212db91bce3ef6ff708d826bbd57b4c9
crc32: D5C7E5C3
md5: cca30b3f205929a8c680fba32554b455
sha1: 15299857c1a989b34328a7c124da215500fccab1
sha256: 99bca64ebf7ed2a306bf7a9842fb38d6212db91bce3ef6ff708d826bbd57b4c9
sha512: 3500f899d4a31109647faefa0e40594224a934a0abd8d3fc0f3a76e6711897441c3863936f10947e6cc0d46c539941bd53e6159a2696f28c060caa163404cf3b
ssdeep: 98304:UbMbANfglixx2x543peTkQ4qHmWpY/je8y6niYaHdy2gQONG+UdpMOSit:UbMsMQx27s/Q4qHmv/ja61aHdyBQ59Yu
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E336335476EA85BAF6E392700A1637718E78EE22131B18DB73F43F0527B56C742F9209
sha3_384: 148f6900d28904a8054a9c9f94474e256e1965b425e802f33e6ee4dd85a77f4a02b8c3c230d964f3c10e2ad86d473bdb
ep_bytes: 558bec6aff68a0964100683066410064
timestamp: 2016-04-02 22:14:17

Version Info:

Comments: For There Software
CompanyName: For There Software
FileDescription: For There Software
LegalCopyright: For There Software
LegalTrademarks: For There Software
ProductName: For There Software
FileVersion: 86.6.891
ProductVersion: 86.6.891
InternalName: For There
OriginalFilename: For There.exe
Translation: 0x0407 0x04b0

Graftor.910461 also known as:

LionicTrojan.Win32.Graftor.4!c
MicroWorld-eScanGen:Variant.Graftor.910461
FireEyeGen:Variant.Graftor.910461
McAfeeArtemis!CCA30B3F2059
CylanceUnsafe
ZillyaTrojan.Agent.Win32.1412561
SangforTrojan.Win32.Sabsik.FL
K7AntiVirusTrojan ( 0057aa071 )
AlibabaPacked:Win32/7Drop.5974545f
K7GWTrojan ( 0057aa071 )
Cybereasonmalicious.f20592
BitDefenderThetaGen:NN.ZexaF.34182.@t3@aOCt3hbi
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.7Zip.S.gen
APEXMalicious
BitDefenderGen:Variant.Graftor.910461
AvastWin32:7Drop-D [Trj]
Ad-AwareGen:Variant.Graftor.910461
EmsisoftGen:Variant.Graftor.910461 (B)
TrendMicroTROJ_GEN.R002C0RB122
McAfee-GW-EditionBehavesLike.Win32.Vawtrak.rc
SophosTroj/Agent-BGQN
IkarusTrojan.Win32.7zip
JiangminTrojan.Alien.gk
AviraHEUR/AGEN.1143645
Antiy-AVLTrojan/Generic.ASMalwS.30EE536
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ViRobotTrojan.Win32.Z.Graftor.5042918
GDataGen:Variant.Graftor.910461
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win.Generic.C4535802
ALYacGen:Variant.Graftor.910461
MAXmalware (ai score=82)
TrendMicro-HouseCallTROJ_GEN.R002C0RB122
RisingMalware.AbnormalStub/SFX!1.D758 (CLASSIC)
FortinetW32/CoinMiner.910461!tr
AVGWin32:7Drop-D [Trj]

How to remove Graftor.910461?

Graftor.910461 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment