Malware

About “Malware.AI.4186609661” infection

Malware Removal

The Malware.AI.4186609661 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4186609661 virus can do?

  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.4186609661?


File Info:

crc32: 383DC833
md5: 42d80bcc6e65eed2ff30dc3090308c75
name: 42D80BCC6E65EED2FF30DC3090308C75.mlw
sha1: 5b2bce01981df505d19dc440d6265f3ab41fa214
sha256: 1db9f741b457848003e6b2a37f7a2183c8d94066309d3f24111037058b8a4983
sha512: 5c9dd44412a1d1fea269d29881040eb4c3579ef2280797cea62a50d2c0ef713c2b4ac8ab42b5571d44cf0a30f7a6f283e92a8635e963391c41669f2eb9f315b8
ssdeep: 12288:a6Et4ru1Xd+cnuu8PWdCvSxGRz9o3xNq8jR0Xd:a6zwd+c6Px3foBs86Xd
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright:
InternalName: nalitepec
FileVersion: 1.6.44.30
CompanyName: Motemag
LegalTrademarks:
ProductName: Gakebo Bakekehi
ProductVersion: 2.9.4.88
FileDescription: Nomakuri
OriginalFilename: nalitepec.exe

Malware.AI.4186609661 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusAdware ( 00529a881 )
LionicAdware.Win32.DealPly.2!c
Elasticmalicious (high confidence)
CAT-QuickHealAdware.Dealply.ZZ8
McAfeeArtemis!42D80BCC6E65
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (D)
K7GWAdware ( 00529a881 )
Cybereasonmalicious.c6e65e
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/DealPly.XG potentially unwanted
APEXMalicious
AvastFileRepMetagen [PUP]
CynetMalicious (score: 100)
Kasperskynot-a-virus:AdWare.Win32.DealPly.daabg
BitDefenderAdware.DealPly.1.Gen
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
MicroWorld-eScanAdware.DealPly.1.Gen
TencentWin32.Adware.Dealply.Pdmm
Ad-AwareAdware.DealPly.1.Gen
SophosDealPly Updater (PUA)
BitDefenderThetaGen:NN.ZelphiF.34266.zmKfamdHd3ki
VIPRETrojan.Win32.Generic!BT
TrendMicroPUA_DEALPLY.SM
McAfee-GW-EditionBehavesLike.Win32.Generic.gc
FireEyeGeneric.mg.42d80bcc6e65eed2
EmsisoftAdware.DealPly.1.Gen (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.DealPly.lygf
AviraHEUR/AGEN.1126495
Antiy-AVLTrojan/Generic.ASMalwS.1E1C9DB
KingsoftWin32.Troj.Dealply.Pd.(kcloud)
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataAdware.DealPly.1.Gen
AhnLab-V3PUP/Win32.DealPly.C2290615
Acronissuspicious
MAXmalware (ai score=99)
MalwarebytesMalware.AI.4186609661
PandaTrj/GdSda.A
TrendMicro-HouseCallPUA_DEALPLY.SM
RisingAdware.DealPly!1.AA42 (CLASSIC)
IkarusAdWare.DealPly
MaxSecureTrojan.Malware.300983.susgen
FortinetAdware/DealFly
AVGFileRepMetagen [PUP]
Paloaltogeneric.ml

How to remove Malware.AI.4186609661?

Malware.AI.4186609661 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment