Malware

About “Graftor.Elzob.14204” infection

Malware Removal

The Graftor.Elzob.14204 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.Elzob.14204 virus can do?

  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Graftor.Elzob.14204?


File Info:

crc32: 40FDE7CE
md5: 120f688f1ff55d5bc4bb52289acd62cd
name: 120F688F1FF55D5BC4BB52289ACD62CD.mlw
sha1: 2175c834efce4763b9378cb098483c7b7ea0a702
sha256: d856c60cee79ddcc6ce83269a7f5fbfca47c1bddc0e073865e22782dbe7c31af
sha512: 75a0e7d3ca26271854ec370ebde83a07335bd751d4ac71d94acabe1217f3f9a32f12a30b859a486aaf1f4428858610c8ea7be36501420257239a540a7a224260
ssdeep: 12288:wkC6BjXnH5m2ofU3KriNHJXaAvhB4KSOW:wkC6BjXZmBfKKr+NheKSO
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Graftor.Elzob.14204 also known as:

K7AntiVirusTrojan ( 0055e3f01 )
LionicTrojan.Win32.Buzus.4!c
DrWebBackDoor.Furax.29
CynetMalicious (score: 99)
CMCGeneric.Win32.120f688f1f!CMCRadar
CAT-QuickHealTrojan.Delf.17165
ALYacBackdoor.Bifrose.CC
CylanceUnsafe
ZillyaBackdoor.Bifrose.Win32.74503
SangforTrojan.Win32.Buzus.buxin
AlibabaTrojan:Win32/Buzus.a1f37dda
K7GWTrojan ( 0055e3f01 )
Cybereasonmalicious.f1ff55
CyrenW32/Backdoor.RHDG-3441
SymantecTrojan Horse
ESET-NOD32a variant of Win32/Injector.CYPX
AvastWin32:Trojan-gen
ClamAVWin.Trojan.Delf-4376
KasperskyTrojan.Win32.Buzus.j
BitDefenderGen:Variant.Graftor.Elzob.14204
NANO-AntivirusTrojan.Win32.Buzus.dxqlzq
ViRobotBackdoor.Win32.A.Bifrose.481792[UPX]
MicroWorld-eScanGen:Variant.Graftor.Elzob.14204
TencentMalware.Win32.Gencirc.10cd84ab
Ad-AwareGen:Variant.Graftor.Elzob.14204
SophosMal/Generic-R
ComodoBackdoor@#ms6lztujn6l4
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_BUZUS.CU
McAfee-GW-EditionBehavesLike.Win32.Dropper.gc
FireEyeGen:Variant.Graftor.Elzob.14204
EmsisoftGen:Variant.Graftor.Elzob.14204 (B)
JiangminBackdoor/Bifrose.artk
WebrootVir.Tool.Gen
AviraTR/Hijacker.Gen
Antiy-AVLTrojan/Generic.ASMalwS.1072276
KingsoftWin32.Hack.Bifrose.(kcloud)
MicrosoftTrojan:Win32/Occamy.C
ArcabitTrojan.Graftor.Elzob.D377C
GDataGen:Variant.Graftor.Elzob.14204
McAfeeArtemis!120F688F1FF5
MAXmalware (ai score=99)
VBA32suspected of Trojan-Dropper.Agent.109
PandaGeneric Malware
TrendMicro-HouseCallTROJ_BUZUS.CU
RisingTrojan.Generic@ML.88 (RDML:C+tJL3WhLhXiPoDT4nyB0A)
YandexBackdoor.Bifrose!Vk6d17FhjLI
IkarusTrojan-Dropper.Delf
MaxSecureTrojan.Malware.1991649.susgen
FortinetW32/BDoor.WEY!tr.bdr
AVGWin32:Trojan-gen

How to remove Graftor.Elzob.14204?

Graftor.Elzob.14204 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment