Malware

Graftor.947462 removal tips

Malware Removal

The Graftor.947462 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.947462 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Unconventionial language used in binary resources: Vietnamese
  • The binary likely contains encrypted or compressed data.
  • Installs itself for autorun at Windows startup
  • Writes a potential ransom message to disk
  • Attempts to modify proxy settings
  • Creates a copy of itself
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

Related domains:

api.2ip.ua
jfes.top

How to determine Graftor.947462?


File Info:

crc32: 5B1EA4CB
md5: a29d9995971d4a73be81c58986f47444
name: A29D9995971D4A73BE81C58986F47444.mlw
sha1: 1575e49f8b741d4fa121b582613dc32064f7af59
sha256: 9ded335a6f346de4aafbc4f8c08e90dce1f064820b13d6580f01731c9837d7a8
sha512: bd3932d031d24459bff181b295bd25a9d8bc1a451cc84f44055b866674480dda486a574e0effe4e05cc492bc6f9dc1a2ac92bbc9b0723a537da47c1e758d7739
ssdeep: 12288:0Cjqt5Miv3B5R3xV7CQutmgITGvGZlij4j26KqPKWW8T1sr4C6pcA+UsyCebAs4:Rqfl/V7CMGvGZi4FPKD8TLnpcA/FJ4Z
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

ProductVersus: 1.9.37.29
FileVerus: 1.0.52.18
Translations: 0x0286 0x0186

Graftor.947462 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Siggen13.14119
CynetMalicious (score: 100)
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
CyrenW32/Kryptik.DZC.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.HMTYKNP
APEXMalicious
AvastWin32:BotX-gen [Trj]
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Graftor.947462
MicroWorld-eScanTrojan.GenericKDZ.74919
Ad-AwareTrojan.GenericKDZ.74919
SophosML/PE-A
BitDefenderThetaGen:NN.ZexaF.34686.ZqW@aeuyMIbO
McAfee-GW-EditionBehavesLike.Win32.Lockbit.cc
FireEyeGeneric.mg.a29d9995971d4a73
EmsisoftGen:Variant.Graftor.947462 (B)
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/Hynamer.C!ml
GDataTrojan.GenericKDZ.74919
Acronissuspicious
MAXmalware (ai score=83)
RisingMalware.Heuristic!ET#84% (RDMK:cmRtazqRNXYef6RtCgeKdpcUSaRx)
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:BotX-gen [Trj]

How to remove Graftor.947462?

Graftor.947462 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment