Malware

What is “Graftor.975241”?

Malware Removal

The Graftor.975241 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.975241 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Deletes its original binary from disk
  • Creates a copy of itself

How to determine Graftor.975241?


File Info:

crc32: D3E50E59
md5: b64de355393045e34903800c684f4b5f
name: B64DE355393045E34903800C684F4B5F.mlw
sha1: 4a1d6b00eab41563cc0ce53bca3414d8e479c0c4
sha256: bb6dd969a6f935a4806259b88316a400828cc7aa102e1af50f4db4a2de9e6d3e
sha512: 17835fed622d8c608072440eec690682fe21198732a4375580f3f45f82b9837336fe0f93f578ca4dd0095b883ffc7f2f96b6396f1385db697a5a157514a5c130
ssdeep: 49152:NBFKQmT4tEgdpDlex9ZxbLaD+s0RU7otaM3v:JtDEg/D09ZJL2+sAB3v
type: PE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows, UPX compressed

Version Info:

0: [No Data]

Graftor.975241 also known as:

K7AntiVirusTrojan ( 0057ffc71 )
Elasticmalicious (high confidence)
DrWebTrojan.Packed2.43250
CynetMalicious (score: 100)
ALYacGen:Variant.Graftor.975241
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7GWTrojan ( 0057ffc71 )
Cybereasonmalicious.539304
CyrenW32/CoinMiner.CQ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DZQA
APEXMalicious
AvastWin32:CoinminerX-gen [Trj]
Kasperskynot-a-virus:HEUR:RiskTool.Win32.BitCoinMiner.vho
BitDefenderGen:Variant.Graftor.975241
MicroWorld-eScanGen:Variant.Graftor.975241
TencentTrojan.Win32.Coinminer.yi
Ad-AwareGen:Variant.Graftor.975241
SophosGeneric ML PUA (PUA)
ComodoPacked.Win32.MUPX.Gen@24tbus
BitDefenderThetaGen:NN.ZexaF.34266.InZ@a0Lpipe
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeGen:Variant.Graftor.975241
EmsisoftGen:Variant.Graftor.975241 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Copak.ayds
AviraTR/Crypt.ULPM.Gen
Antiy-AVLTrojan/Generic.ASBOL.C68A
MicrosoftTrojan:Win32/Injector.RAQ!MTB
ArcabitTrojan.Graftor.DEE189
GDataGen:Variant.Graftor.975241
AhnLab-V3Malware/Gen.RL_Reputation.R364132
McAfeeGenericRXAA-FA!B64DE3553930
MAXmalware (ai score=88)
VBA32Trojan.Packed
MalwarebytesTrojan.Crypt
PandaTrj/Genetic.gen
RisingTrojan.Injector!1.C865 (CLASSIC)
YandexTrojan.Injector!/qEM3hPkHPk
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.EAHK!tr
AVGWin32:CoinminerX-gen [Trj]

How to remove Graftor.975241?

Graftor.975241 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment