Malware

How to remove “Graftor.952873”?

Malware Removal

The Graftor.952873 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.952873 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Graftor.952873?


File Info:

crc32: 5F78C547
md5: 11c73e45f8dbbb9aa1162c044e83a8b8
name: 11C73E45F8DBBB9AA1162C044E83A8B8.mlw
sha1: 24fda0a361ddb3bac961c84f4b55a532bc2061c6
sha256: 9e313db794797641d0c55ff15c1f663e13893bb443bb84e0dd212f8a7aeca598
sha512: 0743553b95a0c684e8caf916effbaef0d6130593f08a44fe1153fdb46e2eea8b1bb68cfeecd70fc0708fa9c8d2efd91f53182083a61542a3afab90007d4ed596
ssdeep: 3072:H+I17RaHyfgmsowqOuAn49JL9eIjsrqolIzPY+2UWnlM/cY/lmToQSbUMxNX:Hb7RaHyfgmsownuA4fpeIjsrqolIzPY
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: Roulotte
InternalName: Lecithic
FileVersion: 1.00
CompanyName: Roulotte Filler
LegalTrademarks: Roulotte
Comments: Roulotte
ProductName: Roulotte Filler
ProductVersion: 1.00
FileDescription: Roulotte Filler
OriginalFilename: Lecithic.exe

Graftor.952873 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0057c9bd1 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacTrojan.VBInject.gen
CylanceUnsafe
SangforTrojan.Win32.Mucc.obh
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/VBInject.90082eed
K7GWTrojan ( 0057c9bd1 )
CyrenW32/Trojan.GFV.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HKXN
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Malware.Mucc-9863344-0
KasperskyTrojan.Win32.Mucc.obh
BitDefenderGen:Variant.Graftor.952873
MicroWorld-eScanGen:Variant.Graftor.952873
Ad-AwareGen:Variant.Graftor.952873
SophosMal/Generic-S + Troj/Zbot-PKQ
ComodoMalware@#o87lop01e1er
BitDefenderThetaGen:NN.ZevbaF.34690.jm0@amwNCcii
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R06CC0DEK21
McAfee-GW-EditionBehavesLike.Win32.Vilsel.ct
FireEyeGen:Variant.Graftor.952873
EmsisoftGen:Variant.Graftor.952873 (B)
SentinelOneStatic AI – Suspicious PE
AviraTR/Crypt.Agent.qlfdg
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/VBInject.VAM!MTB
ArcabitTrojan.Graftor.DE8A29
AegisLabTrojan.Win32.Mucc.4!c
GDataGen:Variant.Graftor.952873
AhnLab-V3Malware/Win.AGEN.R421604
McAfeeArtemis!11C73E45F8DB
MAXmalware (ai score=89)
VBA32BScope.Trojan.Mucc
MalwarebytesTrojan.GuLoader
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R06CC0DEK21
RisingTrojan.Kryptik!8.8 (CLOUD)
YandexTrojan.Mucc!C/UCwUDn1uw
IkarusTrojan.VB.Crypt
MaxSecureTrojan.Malware.118165233.susgen
FortinetW32/Mucc.OAH!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Graftor.952873?

Graftor.952873 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment