Malware

Malware.AI.3422342000 removal

Malware Removal

The Malware.AI.3422342000 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3422342000 virus can do?

  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.3422342000?


File Info:

name: 7F42ADF0BBFE1A60BF58.mlw
path: /opt/CAPEv2/storage/binaries/c927a0e6a88eb33db7fc977020ef632443c8e94e70f71e63029421444a897839
crc32: 0E91BB7E
md5: 7f42adf0bbfe1a60bf586688730758f3
sha1: 7be03f5fe48522396c8f2cb6bc2479749f4a2206
sha256: c927a0e6a88eb33db7fc977020ef632443c8e94e70f71e63029421444a897839
sha512: 304fea556d67b16e384525cedb25a74bf19287a7fd4c7cfb171bf2ee71c2893f680ec5375e28d2fc028e50c0b07a05d37a539bacd379b77baa39cf3d61b038db
ssdeep: 6144:Xtwg/ueiWFl2pV+03NO+ElUAzHypuktliJuBwTvX:Xtwg/RiWFe7dJAopi8BgX
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BD546C73E7D04837D1232A7D9D5B5B68E83ABE112A2C14465BED2C0C9F3D7827928397
sha3_384: 8b0eb492b81d79cbde783eae8ae1a58375f11eba2a367949fc9df2d29c749d59be13024cb66a0e7f6cfa3039c3cb1916
ep_bytes: 558bec83c4f4b8b0f74300e8cc65fcff
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Malware.AI.3422342000 also known as:

LionicRiskware.Win32.DealPly.1!c
Elasticmalicious (high confidence)
MicroWorld-eScanAdware.DealPly.1.Gen
FireEyeGeneric.mg.7f42adf0bbfe1a60
CAT-QuickHealPUA.GenericPMF.S5626927
CylanceUnsafe
SangforVirus.Win32.Save.a
K7AntiVirusAdware ( 00529a881 )
K7GWAdware ( 00529a881 )
Cybereasonmalicious.0bbfe1
BitDefenderThetaAI:Packer.2F88DEA816
VirITTrojan.Win32.Generic.ONC
CyrenW32/DealPly.AG.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/DealPly.VP potentially unwanted
APEXMalicious
Kasperskynot-a-virus:VHO:AdWare.Win32.DealPly.gen
BitDefenderAdware.DealPly.1.Gen
NANO-AntivirusRiskware.Win32.DealPly.foctzv
AvastWin32:Adware-gen [Adw]
TencentMalware.Win32.Gencirc.10b45197
Ad-AwareAdware.DealPly.1.Gen
EmsisoftAdware.DealPly.1.Gen (B)
VIPRETrojan.Win32.Generic!BT
TrendMicroAdware.Win32.DEALPLY.SME
McAfee-GW-EditionBehavesLike.Win32.AdwareDealPly.dh
SophosDealPly Updater (PUA)
SentinelOneStatic AI – Suspicious PE
WebrootW32.Adware.Gen
AviraHEUR/AGEN.1109256
Antiy-AVLTrojan/Generic.ASMalwS.3F4D5
MicrosoftBrowserModifier:Win32/Prifou
GDataAdware.DealPly.1.Gen
CynetMalicious (score: 99)
AhnLab-V3PUP/Win32.DealPly.C3042424
McAfeeRDN/Generic PUP.z
MAXmalware (ai score=63)
VBA32Trojan.Sabsik.FL
MalwarebytesMalware.AI.3422342000
TrendMicro-HouseCallAdware.Win32.DEALPLY.SME
RisingPUF.DealPly!1.AA42 (CLOUD)
YandexRiskware.Agent!RlIyjQizkaY
IkarusPUA.DealPly
FortinetAdware/DealFly
AVGWin32:Adware-gen [Adw]
CrowdStrikewin/grayware_confidence_100% (W)

How to remove Malware.AI.3422342000?

Malware.AI.3422342000 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment