Malware

Application.DealPly.18 removal

Malware Removal

The Application.DealPly.18 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.DealPly.18 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Application.DealPly.18?


File Info:

name: DC5185A258A3D4581C65.mlw
path: /opt/CAPEv2/storage/binaries/2938f66b2f862d9a3cf8ebcfa472d08141db1ca6a44522978634d0feaa285959
crc32: 1E8D31D6
md5: dc5185a258a3d4581c65d2f714dec633
sha1: ee70be8c5b9d0d49a94ebce5c7e66af679295aed
sha256: 2938f66b2f862d9a3cf8ebcfa472d08141db1ca6a44522978634d0feaa285959
sha512: 121ad4e3c73aa85c25cea184d9c9afb40a0b2017165ad545ac5eb02142aa5787ca48e9c1a08b252a2d58e41867f81b738a9f1b4e8434989cf8b716e7b2459a08
ssdeep: 6144:YCRFLhNjCF5nq1CBm/JZT87VnVkGxLfXZUWkD8tjRZsYRRjty/4yZr:YSNCF5n8CBmoANeEYDs/x
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C4B47D75F6D0D537D0371BB49C4745E8A8397F102E29688A3FE82E1C5F3C6913A262E6
sha3_384: 3fb8a10d1ba10f5db3cfc08d95c8efd2ee4815eb3beb2beea4adf890a41db47b5f7be51a923ba69a1ea96e75f909ff28
ep_bytes: 558bec83c4f053b8140e4700e8434af9
timestamp: 2007-01-27 07:21:38

Version Info:

0: [No Data]

Application.DealPly.18 also known as:

BkavW32.FakeExeYHPtv.Worm
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
FireEyeGeneric.mg.dc5185a258a3d458
CAT-QuickHealW32.Grenam.A9
McAfeeArtemis!DC5185A258A3
CylanceUnsafe
SangforTrojan.Win32.Save.a
BitDefenderGen:Variant.Application.DealPly.18
CrowdStrikewin/malicious_confidence_90% (W)
BitDefenderThetaAI:Packer.56B8D47A17
VirITWorm.Win32.Delf.KHX
CyrenW32/A-2f9e86a4!Eldorado
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_AGENT_005249.TOMB
ClamAVWin.Virus.Gnamer-1
AlibabaTrojan:Win32/Grenam.371
ViRobotWin32.Renamer.A
MicroWorld-eScanGen:Variant.Application.DealPly.18
RisingMalware.Heuristic!ET#93% (RDMK:cmRtazrmKFj8mYsFfbVqHLM/8W9M)
Ad-AwareGen:Variant.Application.DealPly.18
EmsisoftGen:Variant.Application.DealPly.18 (B)
ComodoWorm.Win32.Delf.nj@4ri78u
DrWebTrojan.Inject2.58276
TrendMicroTROJ_AGENT_005249.TOMB
McAfee-GW-EditionBehavesLike.Win32.Gnamer.ht
SophosML/PE-A + W32/Renamer-K
APEXMalicious
JiangminWorm/Delf.yc
MaxSecureVirus.W32.Renamer.J
AviraW32/Renamer.A
MAXmalware (ai score=79)
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GridinsoftRansom.Win32.Sabsik.sa
GDataGen:Variant.Application.DealPly.18
SentinelOneStatic AI – Suspicious PE
AhnLab-V3Win32/Unruy.534016
Acronissuspicious
ALYacGen:Variant.Application.DealPly.18
MalwarebytesVirus.Renamer.VirRenam1
IkarusDropper.Patched
eGambitUnsafe.AI_Score_81%
FortinetRiskware/AGENT_005249
AVGWin32:Renamer-F [Trj]
Cybereasonmalicious.258a3d
AvastWin32:Renamer-F [Trj]

How to remove Application.DealPly.18?

Application.DealPly.18 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment