Malware

Malware.AI.1906074610 removal guide

Malware Removal

The Malware.AI.1906074610 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1906074610 virus can do?

  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

How to determine Malware.AI.1906074610?


File Info:

crc32: CA1AC2C7
md5: d63bfe882e08548eab43ed3ea0af6861
name: D63BFE882E08548EAB43ED3EA0AF6861.mlw
sha1: 92704148b7ba1852e73790cb0015d642171fbd3c
sha256: 210b20c7f934074fd8a473db0d0e9e025a2fcbca7d440ca7bfa47d3da0a40598
sha512: 39189d9d08d853707d43e7fdf2b58d882b970bac6891d461fccc82238b8423e253ae0f9377813e6df5a3cb48605f7f64974dc97c00218f5e6454d0a508a36da0
ssdeep: 12288:Bf+1Dvdum5Ay6m7TqooQl05qPrTDfOJmsmgV4wChGdl6/DQOI/O1:tOrAyxLoQEqfSJmsDVTCYlVOI/k
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyright xa9 All Rights Reserved
InternalName: gegamoglaho
FileVersion: 1.3.49.85
CompanyName: Salecarabako
LegalTrademarks: Salecarabako trademark
ProductName: Dateteka
ProductVersion: 1.7.19.34
FileDescription:
OriginalFilename: gegamoglaho.exe

Malware.AI.1906074610 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusAdware ( 0053f9621 )
LionicAdware.Win32.DealPly.2!c
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
CylanceUnsafe
ZillyaAdware.DealPly.Win32.183908
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:Win32/DealPly.d3878f5c
K7GWAdware ( 0053f9621 )
Cybereasonmalicious.82e085
CyrenW32/DealPly.BS.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/DealPly.WU potentially unwanted
APEXMalicious
AvastWin32:Adware-gen [Adw]
Kasperskynot-a-virus:HEUR:AdWare.Win32.DealPly.gen
BitDefenderAdware.DealPly.2.Gen
NANO-AntivirusRiskware.Win32.DealPly.fimexm
MicroWorld-eScanAdware.DealPly.2.Gen
TencentWin32.Adware.Dealply.Wptb
Ad-AwareAdware.DealPly.2.Gen
SophosDealPly Updater (PUA)
ComodoApplicUnwnt@#38akk5609upbg
BitDefenderThetaGen:NN.ZelphiF.34294.MmKfaCpK15gi
McAfee-GW-EditionBehavesLike.Win32.Generic.jc
FireEyeAdware.DealPly.2.Gen
EmsisoftAdware.DealPly.2.Gen (B)
SentinelOneStatic AI – Suspicious PE
JiangminAdWare.DealPly.jyni
AviraHEUR/AGEN.1104226
Antiy-AVLTrojan/Generic.ASMalwS.272CF78
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataAdware.DealPly.2.Gen
AhnLab-V3PUP/Win32.DealPly.C2629702
McAfeeArtemis!D63BFE882E08
MAXmalware (ai score=69)
VBA32Adware.DealPly
MalwarebytesMalware.AI.1906074610
PandaTrj/Genetic.gen
YandexPUA.DealPly!++diJlG0D6I
IkarusPUA.DealPly
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/DealPly
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Malware.AI.1906074610?

Malware.AI.1906074610 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment