Malware

Graftor.942942 (B) removal guide

Malware Removal

The Graftor.942942 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.942942 (B) virus can do?

  • At least one process apparently crashed during execution
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Graftor.942942 (B)?


File Info:

name: 1E9A16DB9A15A7A152C0.mlw
path: /opt/CAPEv2/storage/binaries/e0d7d879031b5216405dafe450ca7455e050120673d243094b6b9a0605d30484
crc32: A1E5D985
md5: 1e9a16db9a15a7a152c09a377799a243
sha1: 2897eff9583ab06901d5d9e01e522829d4a28c35
sha256: e0d7d879031b5216405dafe450ca7455e050120673d243094b6b9a0605d30484
sha512: 3c88779140487c97e8e0e078142925f75e8848c9355fa0a58b508d517e62d67dd13050b7c0a53033c6e8c4b305631b96b442a3b4430f20cf577ee5a9e2a78505
ssdeep: 49152:PaOBfJXAf3zSey3J86NOuv2CnqMJVEnSnks8pk+aBiuKgluykf+XNZKm3JgdOG:PaOBfK/zSey3J8vuvfdSSnks8SxTZlwl
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17CD52302BE948573D5331A310974A7952D3DB8702B5086DFB7D85D6EEF358C0A33AAA3
sha3_384: d50aed5f8fe1dd6f08530ba172df6ba20af529ea0d1748c9bdd8b90288aad40a4220bfd3441d6cdaf32e4929a9bb8314
ep_bytes: e8e4040000e988feffff3b0d18d54300
timestamp: 2020-06-25 10:38:36

Version Info:

ProductName: WinRAR
CompanyName: Alexander Roshal
FileDescription: WinRAR archiver
FileVersion: 5.91.0
ProductVersion: 5.91.0
InternalName: WinRAR
LegalCopyright: Copyright © Alexander Roshal 1993-2020
OriginalFilename: WinRAR.exe
Translation: 0x0409 0x04e4

Graftor.942942 (B) also known as:

MicroWorld-eScanGen:Variant.Graftor.942942
FireEyeGeneric.mg.1e9a16db9a15a7a1
CAT-QuickHealTrojan.Generic
McAfeeArtemis!1E9A16DB9A15
ZillyaTrojan.Generic.Win32.1317214
SangforTrojan.Win32.Generic.ky
K7AntiVirusRiskware ( 0040eff71 )
AlibabaTrojan:Win32/Swrort.bd37e92b
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_60% (W)
CyrenW32/S-39f37b24!Eldorado
SymantecTrojan.Gen.MBT
APEXMalicious
Paloaltogeneric.ml
KasperskyUDS:Trojan.Win32.Generic
BitDefenderGen:Variant.Graftor.942942
NANO-AntivirusTrojan.Win32.KeyLogger.imcyma
AvastFileRepMalware
TencentWin32.Trojan.Generic.Ebrm
SophosMal/Generic-S
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0WB122
McAfee-GW-EditionBehavesLike.Win32.Dropper.vc
EmsisoftGen:Variant.Graftor.942942 (B)
IkarusTrojan.Swrort
AviraTR/AD.Swrort.lqzgv
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftTrojan:Win32/Ymacco.AAE0
ZoneAlarmUDS:Trojan.Win32.Generic
GDataGen:Variant.Graftor.942942
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R358329
ALYacGen:Variant.Graftor.942942
MAXmalware (ai score=85)
CylanceUnsafe
TrendMicro-HouseCallTROJ_GEN.R002C0WB122
FortinetW32/Patched.SAP!tr
AVGFileRepMalware
Cybereasonmalicious.b9a15a
PandaTrj/CI.A

How to remove Graftor.942942 (B)?

Graftor.942942 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment