Malware

About “Malware.AI.2608220093” infection

Malware Removal

The Malware.AI.2608220093 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2608220093 virus can do?

  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.2608220093?


File Info:

crc32: 8C850012
md5: b90b4e61835ac1ba4958b91cf3c0e50b
name: B90B4E61835AC1BA4958B91CF3C0E50B.mlw
sha1: cd44de9a7f75f97ccc725c2dda6f4e60979954f9
sha256: deac96a721aec11f0df5b6e96bcc4f7579a74220ca16971e42c701f05cab7066
sha512: 35d537a4b4a4087b80c2cfa9eddecf50863fcc64aaf4f8968059dec365c1d773e81909d3edea287fc12e92b5ee1067a8d4e08df4ce1334f7cf4ad94a72586139
ssdeep: 6144:B9NIOQMG3iIrKu5WXxXJbPwniAOlMAfscgMu0W8G:BDIOpGyIwJknihlMA/g+WP
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Nidenohok Ltd. 2012-2015
InternalName: Pilureh
FileVersion: 3.8.22.46
CompanyName: Nidenohok Ltd.
LegalTrademarks:
ProductName: Talakiko Perak
ProductVersion: 3.6.39.68
FileDescription: Begami
OriginalFilename: PilurehTosiseh.exe

Malware.AI.2608220093 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusAdware ( 005380ab1 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CylanceUnsafe
ZillyaAdware.DealPly.Win32.137653
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:Win32/DealPly.82113920
K7GWAdware ( 005380ab1 )
Cybereasonmalicious.1835ac
CyrenW32/DealPly.DO.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/DealPly.UN potentially unwanted
APEXMalicious
AvastWin32:Adware-gen [Adw]
Kasperskynot-a-virus:HEUR:AdWare.Win32.DealPly.gen
BitDefenderAdware.DealPly.2.Gen
NANO-AntivirusRiskware.Win32.DealPly.fineuo
MicroWorld-eScanAdware.DealPly.2.Gen
TencentMalware.Win32.Gencirc.10b48d65
Ad-AwareAdware.DealPly.2.Gen
SophosGeneric PUA MN (PUA)
BitDefenderThetaGen:NN.ZelphiF.34170.rmKfa4fgV0gi
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.PUPXKT.dc
FireEyeAdware.DealPly.2.Gen
EmsisoftAdware.DealPly.2.Gen (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.DealPly.jhry
AviraHEUR/AGEN.1114815
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.2703A7C
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataAdware.DealPly.2.Gen
AhnLab-V3PUP/Win32.RL_DealPly.R287785
McAfeeGenericRXAA-AA!B90B4E61835A
MAXmalware (ai score=93)
VBA32Adware.DealPly
MalwarebytesMalware.AI.2608220093
PandaTrj/Genetic.gen
YandexTrojan.GenAsa!4lNpu3kTDsM
IkarusAdWare.DealPly
FortinetW32/Agen.0754!tr
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Malware.AI.2608220093?

Malware.AI.2608220093 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment