Malware

About “Graftor.952086” infection

Malware Removal

The Graftor.952086 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.952086 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Executable file is packed/obfuscated with ASPack
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Graftor.952086?


File Info:

name: 9B4EFCE31DC42DC84D3C.mlw
path: /opt/CAPEv2/storage/binaries/3ff7b3238cec07244258e91f6c4873544e129e24aa58606848352edd6236ede3
crc32: 44B3CA6C
md5: 9b4efce31dc42dc84d3c0fe0cc48bd2b
sha1: 219d768b048334d0140327670bc3ba1227b04715
sha256: 3ff7b3238cec07244258e91f6c4873544e129e24aa58606848352edd6236ede3
sha512: 51763a7cc9615a57a29b0ac0094db94e60c71854b0296265b5b332c07ef04743684656c619d11de35e01a134b68c96d2a390a5fe626455b0b532e0fc29891dd4
ssdeep: 24576:1rRoNk7BZp0hbF2dZXIBzwKdYVjp17LScuzKPgssStPUvgEA5G:1rRokp0hbuRKwpBLShKPgssSt2gE3
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FAE5180DEFE54C66E1B226708976A35D56717E702E32C28F6A80311EEE71FC19932736
sha3_384: b351437eec5b79706d19c72c21c548e04446500b6bdc2a93341f212bca987fc9dddffb22012ec81aaa2b4492176c3b70
ep_bytes: 430064a1000000005051a154fc430033
timestamp: 2007-08-17 12:43:04

Version Info:

0: [No Data]

Graftor.952086 also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanGen:Variant.Graftor.952086
FireEyeGeneric.mg.9b4efce31dc42dc8
ALYacGen:Variant.Graftor.952086
CylanceUnsafe
SangforTrojan.Win32.Save.a
Cybereasonmalicious.b04833
CyrenW32/Autorun.CS.gen!Eldorado
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/VB.NAR
APEXMalicious
ClamAVWin.Packed.Pidgeon-9909600-0
BitDefenderGen:Variant.Graftor.952086
Ad-AwareGen:Variant.Graftor.952086
SophosGeneric ML PUA (PUA)
McAfee-GW-EditionBehavesLike.Win32.Generic.wm
Trapminemalicious.moderate.ml.score
EmsisoftGen:Variant.Graftor.952086 (B)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.DJ4CW9
JiangminWorm.AutoRun.avtq
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
Acronissuspicious
McAfeeGenericRXAA-FA!9B4EFCE31DC4
MAXmalware (ai score=84)
VBA32Trojan.Sdum
MalwarebytesMalware.Heuristic.1004
RisingTrojan.Generic@AI.100 (RDMK:cmRtazoHI6dgumiY+3tj0Xg28JWc)
IkarusVirus.Win32.VB
FortinetW32/Autorun.DB!tr
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Graftor.952086?

Graftor.952086 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment