Malware

Dropped:Dialer.Porn.Bienvenido.A removal guide

Malware Removal

The Dropped:Dialer.Porn.Bienvenido.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Dropped:Dialer.Porn.Bienvenido.A virus can do?

  • Unconventionial language used in binary resources: Spanish (Modern)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Creates a copy of itself

How to determine Dropped:Dialer.Porn.Bienvenido.A?


File Info:

crc32: A04DBC2B
md5: 17c8d458ea385df18cbd7f1c481a9487
name: ninfomanasx.exe
sha1: 2dd9312563cd525cfd7b37085b730b8bff8853ac
sha256: 20a3bada55fce76846dfcb9206ee952c77b77b9fa787a81cb306267a94894cee
sha512: 4815095735f21d9795fdaad73aabd1d69069171dc935899a6f6027ea3b0e4b84dee0e13ad9fa02c5a934f3221887f261f7756a62e08831a1c02fd46b248442b8
ssdeep: 384:9B28BKtTNNYIyuSmQXwlXoXupogyThIjBKUofeBclHU947OjWBEdc95Y7UkJOEU:9BSTN+HusXmX2zkKl0947wWBDDY7
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyright xa9 2002
InternalName: dialer
FileVersion: 1, 2, 0, 3
CompanyName:
PrivateBuild:
LegalTrademarks:
Comments:
ProductName:
SpecialBuild:
ProductVersion: 1, 2, 0, 3
FileDescription: dialer
OriginalFilename: dialer.exe
Translation: 0x0c0a 0x04b0

Dropped:Dialer.Porn.Bienvenido.A also known as:

MicroWorld-eScanDropped:Dialer.Porn.Bienvenido.A
FireEyeGeneric.mg.17c8d458ea385df1
McAfeeDialer-Generic
CylanceUnsafe
BitDefenderDropped:Dialer.Porn.Bienvenido.A
Cybereasonmalicious.8ea385
CyrenW32/SpywareAdult.A_DET!Eldorado
AvastWin32:PornDialer-EN [Dialer]
GDataDropped:Dialer.Porn.Bienvenido.A
Kasperskynot-a-virus:Porn-Dialer.Win32.Bienvenido
NANO-AntivirusRiskware.Win32.Bienvenido.bbhdm
Ad-AwareDropped:Dialer.Porn.Bienvenido.A
ComodoTrojWare.Win32.Dialer.NAP@2hq0
F-SecureDialer.DIAL/301218
DrWebDialer.Cerra.19
VIPREPorn-Dialer.Win32.Generic (fs)
TrendMicroDIAL_TECNOREV.A
McAfee-GW-EditionDialer-Generic
CMCPorn-Dialer.Win32!O
EmsisoftDropped:Dialer.Porn.Bienvenido.A (B)
Ikarusnot-a-virus:Porn-Dialer.Win32.Bienvenido
F-ProtW32/SpywareAdult.A_DET!Eldorado
JiangminPorn-Dialer.Bienvenido.b
AviraDIAL/301218
eGambitUnsafe.AI_Score_99%
Endgamemalicious (moderate confidence)
ArcabitDialer.Porn.Bienvenido.A
ZoneAlarmnot-a-virus:Porn-Dialer.Win32.Bienvenido
MicrosoftTrojan:Win32/Adialer
ALYacDropped:Dialer.Porn.Bienvenido.A
MAXmalware (ai score=62)
VBA32TScope.Malware-Cryptor.SB
ESET-NOD32Win32/Dialer.NAP
TrendMicro-HouseCallDIAL_TECNOREV.A
RisingMalware.Heuristic!ET#97% (RDMK:cmRtazq+dbVdo+iztW6L/qoSUqb0)
MaxSecureTrojan.Malware.847.susgen
BitDefenderThetaGen:NN.ZexaCO.34106.bmKfaqkxUhH
AVGWin32:PornDialer-EN [Dialer]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_70% (D)
Qihoo-360HEUR/QVM11.1.7033.Malware.Gen

How to remove Dropped:Dialer.Porn.Bienvenido.A?

Dropped:Dialer.Porn.Bienvenido.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment