Adware

Adware.DealPly.2.Gen malicious file

Malware Removal

The Adware.DealPly.2.Gen is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.DealPly.2.Gen virus can do?

  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

How to determine Adware.DealPly.2.Gen?


File Info:

crc32: E2CBDC59
md5: aac91eb5c180f294772563717aa08e51
name: AAC91EB5C180F294772563717AA08E51.mlw
sha1: 5798aa6782e45e92652d23c84e2bc87e6b4424ee
sha256: dbea5af237696ed539f9e38367b18837042e78d5779bd7fc758476ddf4aa0f61
sha512: 714eb1114a89de21660a553c26e10627ef9775ed504b66f32abcd0a691b5f313f9a4dc61185c5424a284fe49fa119b0574b7ed52d9a93187a2b2085868e08b25
ssdeep: 12288:ZzHet8oG7U8hyvSDyLSn+y9N4IZUnD0bNUpjfPlnv3FTAbmoGqnfnz/+:cyo8UgESR+yn4DGqDV7oGsz/+
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright:
InternalName: Danato
FileVersion: 3.5.7.1
CompanyName: Ligogoteha
LegalTrademarks:
ProductName: Bacupise
ProductVersion: 2.2.43.40
FileDescription:
OriginalFilename: Danato.exe

Adware.DealPly.2.Gen also known as:

BkavW32.AIDetect.malware1
K7AntiVirusAdware ( 0053f9621 )
LionicAdware.Win32.DealPly.2!c
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
CylanceUnsafe
ZillyaAdware.DealPly.Win32.211359
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:Win32/DealPly.d17c83fa
K7GWAdware ( 0053f9621 )
Cybereasonmalicious.5c180f
CyrenW32/DealPly.BS.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/DealPly.TP potentially unwanted
APEXMalicious
AvastWin32:Adware-gen [Adw]
Kasperskynot-a-virus:AdWare.Win32.DealPly.dnofd
BitDefenderAdware.DealPly.2.Gen
NANO-AntivirusRiskware.Win32.DealPly.fjpefi
MicroWorld-eScanAdware.DealPly.2.Gen
TencentWin32.Adware.Dealply.Lpvd
Ad-AwareAdware.DealPly.2.Gen
SophosDealPly Updater (PUA)
ComodoMalware@#2zzt23xca8gct
BitDefenderThetaGen:NN.ZelphiF.34170.OmKfaeHf!Hgi
McAfee-GW-EditionBehavesLike.Win32.Generic.jc
FireEyeAdware.DealPly.2.Gen
EmsisoftAdware.DealPly.2.Gen (B)
SentinelOneStatic AI – Suspicious PE
JiangminAdWare.DealPly.kfqo
AviraHEUR/AGEN.1104226
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.28C7ECE
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataAdware.DealPly.2.Gen
AhnLab-V3PUP/Win32.LoadMoney.C2596885
Acronissuspicious
McAfeeGenericRXAA-AA!AAC91EB5C180
MAXmalware (ai score=99)
VBA32Adware.DealPly
PandaTrj/Genetic.gen
YandexPUA.DealPly!YrbxYAAztC8
IkarusPUA.DealPly
FortinetW32/AGEN.1033829!tr
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Adware.DealPly.2.Gen?

Adware.DealPly.2.Gen removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment