Adware

DealPly.Adware.Advertising.DDS (file analysis)

Malware Removal

The DealPly.Adware.Advertising.DDS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What DealPly.Adware.Advertising.DDS virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine DealPly.Adware.Advertising.DDS?


File Info:

name: 100F48D26BF029268BFD.mlw
path: /opt/CAPEv2/storage/binaries/651ffa2325ef666de413a9ab1ce9107599607e7544675801ac908649aed1f3fb
crc32: 168A7782
md5: 100f48d26bf029268bfd37d7b6139ea5
sha1: dc4d5bf1d0339d8d8837c2d061839bfddb27811c
sha256: 651ffa2325ef666de413a9ab1ce9107599607e7544675801ac908649aed1f3fb
sha512: d43c9c0673b7ae0eca1c5bcc263237022f7956845bb367e2a574f2981c378f7516925bcb897f0972c737c49512c5581f951e0236c3ec84bc53edcb9fe98157f7
ssdeep: 6144:7kOm7EOrz1V3zsxGtCHgtY0TKbQXbZvzQJJgfQ90aLi34XItnHoJiP0pN:FmAo1VEGtWPY9rZvEk4906iBHMiP0P
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T197947E27F6D08437C1776A7CDC5B9694982AFE502D6824863BF81D4C9F3D782382A2D7
sha3_384: d73a0765c485b53e51cbe73b52df2b2a55ba61ae06649841076b48e76d7b27cbbad6979b24f3b55752d58926568586f0
ep_bytes: 558bec83c4f0b81ca84500e860c4faff
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

DealPly.Adware.Advertising.DDS also known as:

BkavW32.AIDetectMalware
FireEyeGeneric.mg.100f48d26bf02926
SangforVirus.Win32.Save.a
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/DealPly.BJ potentially unwanted
APEXMalicious
CynetMalicious (score: 100)
Kasperskynot-a-virus:HEUR:AdWare.Win32.DealPly.gen
NANO-AntivirusTrojan.Win32.Kryptik.duvjgb
SUPERAntiSpywareAdware.DealPly/Variant
F-SecureTrojan.TR/Kryptik.abbohc
DrWebAdware.DealPly.479
Trapminemalicious.moderate.ml.score
SophosGeneric ML PUA (PUA)
AviraTR/Kryptik.abbohc
Antiy-AVLTrojan/Win32.BTSGeneric
XcitiumApplicUnwnt.Win32.DealPly.b@5xdvtf
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.DealPly.gen
MicrosoftTrojan:Win32/Sabsik.TE.A!ml
VBA32Adware.DealPly
MalwarebytesDealPly.Adware.Advertising.DDS
RisingTrojan.Generic@AI.100 (RDML:YqTzPC29pm161KPULKow+A)
IkarusPUA.DealPly
MaxSecureTrojan.Malware.300983.susgen
FortinetAdware/DealPly
DeepInstinctMALICIOUS
CrowdStrikewin/grayware_confidence_100% (D)

How to remove DealPly.Adware.Advertising.DDS?

DealPly.Adware.Advertising.DDS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment