Malware

Should I remove “Graftor.Elzob.17993”?

Malware Removal

The Graftor.Elzob.17993 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Graftor.Elzob.17993 virus can do?

  • Drops a binary and executes it
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Graftor.Elzob.17993?


File Info:

crc32: 6283940B
md5: f0721ce3e5ca9c0903da6234abb19f9c
name: F0721CE3E5CA9C0903DA6234ABB19F9C.mlw
sha1: 3f319be9d97e991bc273b5aab2fa03cd5a0e1059
sha256: 1a4fc01da6cbb493a2cae8c1409955acd549453d6106c3ab2cb53c20b4cceaac
sha512: 14e11cac8987ac53288a1c32d35700d2ace887c620bf0e1786e6299d1cce4de30140ffa9505783d1007609b09136f39dcc4f5fbe4fbdb0f28dd7e919eff4a284
ssdeep: 12288:Y0CNdeKpBJ6U4r0JCfD9kHjF838vrsk+jeakE/RC:Y02DpBJwr0sfDkjF8MoJeXEE
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 1996-2003 Macromedia, Inc.
InternalName: Macromedia Flash Player 7.0
FileVersion: 7,0,19,0
CompanyName: Macromedia, Inc.
LegalTrademarks: Macromedia Flash Player
ProductName: Shockwave Flash
ProductVersion: 7,0,19,0
FileDescription: Macromedia Flash Player 7.0 r19
OriginalFilename: SAFlashPlayer.exe
Translation: 0x0409 0x04b0

Graftor.Elzob.17993 also known as:

K7AntiVirusTrojan ( 0053dca11 )
DrWebTrojan.MulDrop.32800
CynetMalicious (score: 100)
ALYacGen:Variant.Graftor.Elzob.17993
CylanceUnsafe
ZillyaTrojan.Generic.Win32.133681
AlibabaTrojanDropper:Win32/BHODrop.e26659e8
K7GWTrojan ( 0053dca11 )
Cybereasonmalicious.3e5ca9
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/TrojanDropper.Agent.RGA
APEXMalicious
AvastWin32:Trojan-gen
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Graftor.Elzob.17993
NANO-AntivirusTrojan.Win32.Agent.crpzyp
ViRobotTrojan.Win32.Agent.209408.C
MicroWorld-eScanGen:Variant.Graftor.Elzob.17993
TencentMalware.Win32.Gencirc.114d2a7c
Ad-AwareGen:Variant.Graftor.Elzob.17993
SophosMal/BHODrop-A
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.f0721ce3e5ca9c09
EmsisoftGen:Variant.Graftor.Elzob.17993 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Agent.ilsd
AviraTR/Crypt.CFI.Gen
Antiy-AVLTrojan/Generic.ASMalwS.865A
MicrosoftTrojan:Win32/Skeeyah.A!rfn
GDataGen:Variant.Graftor.Elzob.17993
AhnLab-V3Trojan/Win32.Xema.C65169
McAfeeGenericRXAA-AA!F0721CE3E5CA
MAXmalware (ai score=100)
VBA32BScope.Trojan.Buzus.es
PandaTrj/CI.A
RisingTrojan.Generic@ML.93 (RDML:hWFtCm1MYUYQn3K7gcxBew)
YandexTrojan.GenAsa!Iictb0PtfMs
IkarusTrojan.BHO
FortinetW32/BHODrop.A!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Graftor.Elzob.17993?

Graftor.Elzob.17993 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment