Malware

What is “Application.DealAlpha.1.Gen”?

Malware Removal

The Application.DealAlpha.1.Gen is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.DealAlpha.1.Gen virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs

How to determine Application.DealAlpha.1.Gen?


File Info:

crc32: D2465402
md5: 6ccd5ef580d64d59908d0bc71b90ef92
name: k-lite_codec_pack_2867704248-14.8.4.exe
sha1: 40d7fee17946bad08dcc4869478e0357abc493fd
sha256: 3d68669c9562140f2578772688dfd6cca64cfcea31ee405437da33adaa468b1a
sha512: 86675c24a83e44eb812b755db3a69e870b3967071c6ab7f84d6c23e01ece58c0b315f6a158c818398dcb3a4dbc41ddeb3cc09c825f4911a93e1dc7e96c59fa56
ssdeep: 49152:OWzMP1bULcBp5wtV2PHYNazOQ9m4Pvmo8M8sc9wkq/PMeLI:OWzMSLc/5w2PHTzvExsCN+PLLI
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
FileVersion: 3.5.5.5
CompanyName:
Comments: This installation was built with Inno Setup.
ProductName: Basobefu
ProductVersion: 5.7.2
FileDescription: Basobefu Setup
Translation: 0x0000 0x04b0

Application.DealAlpha.1.Gen also known as:

MicroWorld-eScanApplication.DealAlpha.1.Gen
FireEyeGeneric.mg.6ccd5ef580d64d59
CAT-QuickHealTrojan.InstallCore
Qihoo-360Win32/Sorter.AVE.70InnoSetup.A
McAfeeInstallCore
CylanceUnsafe
VIPREAdware.InstallCore
SangforMalware
K7AntiVirusAdware ( 0053289d1 )
BitDefenderApplication.DealAlpha.1.Gen
K7GWAdware ( 0053289d1 )
Cybereasonmalicious.580d64
Invinceaheuristic
SymantecPUA.InstallCore
APEXMalicious
ClamAVWin.Malware.Installcore-6912929-0
GDataWin32.Application.InstallCore.LX
Kasperskynot-a-virus:HEUR:Downloader.Win32.DealPly.gen
AlibabaDownloader:Win32/DealPly.95dc02f0
NANO-AntivirusTrojan.Win32.DealPly.fsgszj
ViRobotAdware.Installcore.2135400
Endgamemalicious (high confidence)
EmsisoftApplication.InstallCore (A)
ComodoMalware@#11175qhs8y741
DrWebTrojan.InstallCore.3465
McAfee-GW-EditionInstallCore
Trapminemalicious.high.ml.score
SophosInstall Core (PUA)
CyrenW32/InstallCore.BW.gen!Eldorado
JiangminAdWare.DealPly.lqre
WebrootW32.Adware.Gen
ArcabitApplication.DealAlpha.1.Gen
ZoneAlarmnot-a-virus:HEUR:Downloader.Win32.DealPly.gen
MicrosoftPUA:Win32/InstallCore
AhnLab-V3Win-PUP/HALOMOT.Exp
Acronissuspicious
VBA32Trojan.InstallCore
MAXmalware (ai score=99)
MalwarebytesPUP.Optional.InstallCore
PandaPUP/Multitoolbar
ESET-NOD32Win32/InstallCore.Gen.B potentially unwanted
YandexPUA.Downloader!
FortinetRiskware/InstallCore
CrowdStrikewin/malicious_confidence_100% (D)
MaxSecureTrojan.Malware.73422099.susgen

How to remove Application.DealAlpha.1.Gen?

Application.DealAlpha.1.Gen removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment