Malware

About “Graftor.947942” infection

Malware Removal

The Graftor.947942 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.947942 virus can do?

  • Executable code extraction
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs

How to determine Graftor.947942?


File Info:

crc32: E52E6AFB
md5: f2c98d7cc9ed2b8752d522240b076e65
name: F2C98D7CC9ED2B8752D522240B076E65.mlw
sha1: 50119e3292fc0595cefc91de958997dfea72cbfb
sha256: bc0055a02ec7f19f7ded6588565ca2818ac13b72c17d155037bdf3a6452cece7
sha512: 44786c5cbdc8afdf3af60feebca27624c1d7cae4d7bfa380142a2925940109af50dce0a38aa0a8937a7e447a4571395156ed2166cf0143d02f2c55ed448404cc
ssdeep: 6144:vQTAOQ+W3Zd/vMSv0fbqfJ2I5ttY+we7apzQiHDTU0HDhNQePZdEPO6:vQaZd6Ow+9j+PTU0HfZEP
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: TODO: (C) x3002x4fddx7559x6240x6709x6743x5229x3002
InternalName: xhuobuchanggandubiaishisui.exe
FileVersion: 1.0.0.1
CompanyName: TODO:
ProductName: TODO:
ProductVersion: 1.0.0.1
FileDescription: TODO:
OriginalFilename: xhuobuchanggandubiaishisui.exe
Translation: 0x0804 0x03a8

Graftor.947942 also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Graftor.947942
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
BitDefenderGen:Variant.Graftor.947942
Cybereasonmalicious.292fc0
ESET-NOD32a variant of Win32/GenKryptik.FFJG
APEXMalicious
MicroWorld-eScanGen:Variant.Graftor.947942
TencentWin32.Trojan.Graftor.Ednl
Ad-AwareGen:Variant.Graftor.947942
BitDefenderThetaGen:NN.ZexaF.34758.Au0@aaGc3yib
FireEyeGeneric.mg.f2c98d7cc9ed2b87
EmsisoftGen:Variant.Graftor.947942 (B)
JiangminHeur:TrojanDropper.TDSS
eGambitUnsafe.AI_Score_83%
ArcabitTrojan.Graftor.DE76E6
GDataGen:Variant.Graftor.947942
MAXmalware (ai score=83)
MalwarebytesMalware.AI.4103873004

How to remove Graftor.947942?

Graftor.947942 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment