Malware

AdWare.Win32.DealPly.dgald removal guide

Malware Removal

The AdWare.Win32.DealPly.dgald is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AdWare.Win32.DealPly.dgald virus can do?

  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine AdWare.Win32.DealPly.dgald?


File Info:

crc32: EF3D441D
md5: 04dd8f4927c87ac55504596308490676
name: 04DD8F4927C87AC55504596308490676.mlw
sha1: 64333425b89361377de143dfb3b8328284ace7c4
sha256: 5fc6db1dee5342134ea0ecd4dd64210e9e768a79653dc322974f044d770b2e23
sha512: 0fcf5c53e1b504d140cbdd2c5b52950c083c2a1365e1d74c0644b568b07dff1b18f3caf90eef013fc95403b4dd09e941a7625f9bc1d9f3f9e145c26811522352
ssdeep: 12288:KPq41kDMq6weA/f5GCorWaafHCNGnANZ:TO056weA/BG3ufiHz
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
InternalName: Diheke
FileVersion: 1.9.26.2
CompanyName: Popece
LegalTrademarks:
ProductName: Raseca Sagot Hubele
ProductVersion: 2.5.12.75
FileDescription: Niba Poceg
OriginalFilename: diheketucar.exe

AdWare.Win32.DealPly.dgald also known as:

BkavW32.AIDetect.malware1
K7AntiVirusAdware ( 005393151 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CylanceUnsafe
ZillyaAdware.DealPly.Win32.107484
SangforVirus.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWAdware ( 005393151 )
Cybereasonmalicious.927c87
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/DealPly.QW potentially unwanted
APEXMalicious
AvastWin32:DealPly-AJ [Adw]
Kasperskynot-a-virus:AdWare.Win32.DealPly.dgald
BitDefenderAdware.DealPly.1.Gen
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
MicroWorld-eScanAdware.DealPly.1.Gen
TencentMalware.Win32.Gencirc.10c8ce12
Ad-AwareAdware.DealPly.1.Gen
SophosDealPly Updater (PUA)
ComodoApplicUnwnt@#38793ho0e28l8
BitDefenderThetaGen:NN.ZelphiF.34294.DK0@aObABcni
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.gh
FireEyeGeneric.mg.04dd8f4927c87ac5
EmsisoftAdware.DealPly.1.Gen (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.DealPly.nrpu
AviraHEUR/AGEN.1125473
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.25233D7
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataAdware.DealPly.1.Gen
AhnLab-V3PUP/Win32.Generic.R230927
Acronissuspicious
McAfeeGenericRXAA-AA!04DD8F4927C8
MAXmalware (ai score=97)
VBA32Adware.DealPly
MalwarebytesMalware.AI.936451774
PandaTrj/GdSda.A
RisingAdware.DealPly!1.AA42 (CLASSIC)
YandexPUA.DealPly!l9tZnS8R3vg
IkarusPUA.DealPly
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/DealPly
AVGWin32:DealPly-AJ [Adw]
Paloaltogeneric.ml

How to remove AdWare.Win32.DealPly.dgald?

AdWare.Win32.DealPly.dgald removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment