Malware

Graftor.972231 information

Malware Removal

The Graftor.972231 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.972231 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Graftor.972231?


File Info:

crc32: 7C65DA71
md5: d0a9777d063838dbf9d566a8ae327c4e
name: D0A9777D063838DBF9D566A8AE327C4E.mlw
sha1: 6f92815c9209e5d1e1bc1100b5f6c59502ab32d8
sha256: cbe76441844bd0b28afb2b183f52ef3bec4c2a4b26884219049ba2618a823989
sha512: 174082c78d9ea76724cee9736a07400e3cb24b1d4ba0d6f4e4e4ab2b89043633af5f67cb853edd6af33f894149c66787a4eecf69dfe35abea50c1b283fdceefb
ssdeep: 3072:dvNLuxQI4JTJlYDFS6t2NAgEaakq7MCi6TM7EKNfFln:dv5PB3ot2ygEasni6TM7EKN
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 1997-2018 The PHP Group
InternalName: HSY8_12B heunwssnr
FileVersion: 4.4.7
CompanyName: The PHP Group
URL: http://www.php.net
LegalTrademarks: PHP
Comments: Thanks to Stig Bakken, Thies C. Arntzen, Andy Sautins, David Benson, Maxim Maletsky, Harald Radi, Antony Dovgal, Andi Gutmans, Wez Furlong, Christopher Jones, Oracle Corporation
ProductName: HSY
ProductVersion: 4.4.7
FileDescription: OCI8
OriginalFilename: hsy_utu8_12u.dll
Translation: 0x0409 0x04b0

Graftor.972231 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
ALYacGen:Variant.Graftor.972231
CylanceUnsafe
CrowdStrikewin/malicious_confidence_80% (D)
BitDefenderGen:Variant.Graftor.972231
SymantecML.Attribute.HighConfidence
APEXMalicious
CynetMalicious (score: 100)
NANO-AntivirusVirus.Win32.Gen.ccmw
MicroWorld-eScanGen:Variant.Graftor.972231
Ad-AwareGen:Variant.Graftor.972231
SophosML/PE-A
BitDefenderThetaGen:NN.ZedlaF.34050.ku8@aKRR@fmi
FireEyeGeneric.mg.d0a9777d063838db
EmsisoftGen:Variant.Graftor.972231 (B)
ArcabitTrojan.Graftor.DED5C7
GDataGen:Variant.Graftor.972231
MAXmalware (ai score=85)
RisingTrojan.Generic@ML.90 (RDML:j/TldKe9C5+fOnwA1UD0/g)

How to remove Graftor.972231?

Graftor.972231 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment