Malware

About “Malware.AI.3110041126” infection

Malware Removal

The Malware.AI.3110041126 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3110041126 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Malware.AI.3110041126?


File Info:

name: FE762126A6E0D006C5CD.mlw
path: /opt/CAPEv2/storage/binaries/518f7d69f6acbfe1ee820a04d04545d8722fc78a681e36d638837f2ce179af96
crc32: DE39611C
md5: fe762126a6e0d006c5cd20d85d338e64
sha1: 5053c8599ca66a595a05c0d72b6df965156ce552
sha256: 518f7d69f6acbfe1ee820a04d04545d8722fc78a681e36d638837f2ce179af96
sha512: 2c9cc34d89fdfe2144b09d018efe4ba6eafc682a0e12a25925bb50b6afaf62a268c1d4ff738f59658db1e21639766f46f6852d4aa0dae7dc914dfe7a1a71b95f
ssdeep: 3072:5dMcRkHGj1I3AJMng3GzcRhE1Wb8ekrCHiLEhREICLk:5djWHGRI3A6gWMyYXhHiLL
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11BF3DF3176E991B2D493293119F5C6A56F6B75435330048F2BEC2B7F6F90AC087B632A
sha3_384: d4897c92b8e375b55437b621fe980d036b86d4f4713e05e494d16b443391f564ea3758392eea5a1d46d732354fb58c73
ep_bytes: e85d250000e989feffff8bff565733f6
timestamp: 2014-01-25 23:26:48

Version Info:

0: [No Data]

Malware.AI.3110041126 also known as:

LionicAdware.Win32.DealPly.2!c
tehtrisGeneric.Malware
MicroWorld-eScanAdware.DealPly.3.Gen
FireEyeGeneric.mg.fe762126a6e0d006
ALYacAdware.DealPly.3.Gen
CylanceUnsafe
ZillyaAdware.DealPly.Win32.444748
SangforTrojan.Win32.Save.a
K7AntiVirusAdware ( 005380aa1 )
AlibabaAdWare:Win32/DealPly.dd1ae205
K7GWAdware ( 005380aa1 )
Cybereasonmalicious.6a6e0d
BitDefenderThetaGen:NN.ZexaF.34264.juW@a8vcfnh
CyrenW32/S-9ba4c2bf!Eldorado
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/DealPly.ST potentially unwanted
APEXMalicious
Paloaltogeneric.ml
Kasperskynot-a-virus:HEUR:AdWare.Win32.DealPly.gen
BitDefenderAdware.DealPly.3.Gen
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
SUPERAntiSpywarePUP.DealPly/Variant
AvastWin32:Adware-gen [Adw]
TencentMalware.Win32.Gencirc.114cfcbe
Ad-AwareAdware.DealPly.3.Gen
SophosGeneric PUA FA (PUA)
ComodoApplication.Win32.DealPly.BS@7r9yms
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PK821
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
Trapminemalicious.high.ml.score
EmsisoftAdware.DealPly.3.Gen (B)
IkarusPUA.DealPly
GDataAdware.DealPly.3.Gen
JiangminAdWare.Generic.ntqo
WebrootW32.Adware.Gen
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Generic.ASMalwS.26853DA
KingsoftWin32.Troj.Generic_a.a.(kcloud)
ArcabitAdware.DealPly.3.Gen
ViRobotAdware.Dealply.160768.AO
MicrosoftTrojan:Win32/Occamy.C51
CynetMalicious (score: 100)
AhnLab-V3PUP/Win32.DealPly.C2801886
Acronissuspicious
McAfeeGenericRXFS-EH!FE762126A6E0
MAXmalware (ai score=99)
VBA32Adware.DealPly
MalwarebytesMalware.AI.3110041126
TrendMicro-HouseCallTROJ_GEN.R002C0PK821
RisingPUF.DealPly!1.B1ED (CLOUD)
YandexPUA.DealPly!wRyZGB0GZJc
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetAdware/DealPly
AVGWin32:Adware-gen [Adw]
PandaTrj/Genetic.gen
CrowdStrikewin/grayware_confidence_100% (D)

How to remove Malware.AI.3110041126?

Malware.AI.3110041126 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment