Adware

Adware.Agent.URO information

Malware Removal

The Adware.Agent.URO is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.Agent.URO virus can do?

  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Adware.Agent.URO?


File Info:

crc32: DD883B90
md5: 8157e5d53105aadce69b1d4876d359a8
name: 8157E5D53105AADCE69B1D4876D359A8.mlw
sha1: daeace5ba5ed867f53db88678a57775763fa425a
sha256: 26598fd6ed10d5a0426a80b89292c76389f0fc7f1a5b7bd3b6e9eecce93fd928
sha512: 63d844cd43a00ce9daafff37f79b1cd3e5f5fa2df82ef8bb5ad498b4443b99ccec93d40f1c771e9049fa9063ec7889081ce262e630c6da06235c5177becea04e
ssdeep: 12288:4nJnelG46J9AaBlxmXR0iW4Q7pkHLYHSezX6HdIARd2qc+:Kew59bzUXHVlsHZ291Rd2qc+
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 All Rights Reserved
InternalName: Mamuke
FileVersion: 3.2.20.34
CompanyName: Fopete
LegalTrademarks:
ProductName: Rinacana Tucuce 47 Regineca
ProductVersion: 2.3.25.39
FileDescription:
OriginalFilename: Mamuke.exe

Adware.Agent.URO also known as:

BkavW32.AIDetect.malware1
K7AntiVirusAdware ( 005393151 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacAdware.Agent.URO
CylanceUnsafe
ZillyaAdware.DealPly.Win32.115014
SangforVirus.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWAdware ( 005393151 )
Cybereasonmalicious.53105a
CyrenW32/DealPly.U.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/DealPly.QW potentially unwanted
APEXMalicious
AvastWin32:DealPly-AJ [Adw]
Kasperskynot-a-virus:AdWare.Win32.DealPly.booxq
BitDefenderAdware.Agent.URO
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
MicroWorld-eScanAdware.Agent.URO
TencentMalware.Win32.Gencirc.10c99fa2
Ad-AwareAdware.Agent.URO
SophosDealPly Updater (PUA)
ComodoMalware@#zq27gnkk6rq4
BitDefenderThetaGen:NN.ZelphiF.34236.FK0@aeE5WPji
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.hh
FireEyeGeneric.mg.8157e5d53105aadc
EmsisoftAdware.Agent.URO (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.DealPly.iemf
AviraHEUR/AGEN.1125473
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.25D24E3
MicrosoftTrojan:Win32/Wacatac.A!ml
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.DealPly.gen
GDataAdware.Agent.URO
Acronissuspicious
McAfeeArtemis!8157E5D53105
MAXmalware (ai score=99)
VBA32Adware.DealPly
PandaTrj/GdSda.A
RisingAdware.DealPly!1.AA42 (CLASSIC)
IkarusPUA.DealPly
FortinetAdware/DealPly
AVGWin32:DealPly-AJ [Adw]
Paloaltogeneric.ml

How to remove Adware.Agent.URO?

Adware.Agent.URO removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment