Malware

Malware.AI.4285602921 removal tips

Malware Removal

The Malware.AI.4285602921 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4285602921 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.4285602921?


File Info:

crc32: CE6931E0
md5: 9f6184ccaeadcacf99ec2f959b59bd3f
name: 9F6184CCAEADCACF99EC2F959B59BD3F.mlw
sha1: aa942b1780aa2a2ea703f130af6433faf91c62ce
sha256: c57fa47ca7fe0b9472f9cad9411b63ea1edaf443d89508d288536a358fd5490c
sha512: 2ee1ca858a2e9b4ad1e75eee02ab266eb75154b90bc68885053593a9d50dfb87cf5528de0d3b3766691ff1d7273892cedb88954a6074f3eb9b1bd712e170c32a
ssdeep: 49152:m/NU6dGJReNnJkJtekkw9xV90wTRKhxMvV4c1:mlGfedst0mawTPP
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
FileVersion: 3.7.1.6
CompanyName:
Comments: This installation was built with Inno Setup.
ProductName: Sen
ProductVersion: 4.8
FileDescription: Sen Setup
Translation: 0x0000 0x04b0

Malware.AI.4285602921 also known as:

LionicAdware.Win32.DealPly.2!c
CynetMalicious (score: 100)
ALYacApplication.DealAgent.OND
CylanceUnsafe
ZillyaTool.DealAgent.Win32.1088
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:Win32/InstallCore.609ad9b9
Cybereasonmalicious.caeadc
SymantecTrojan.Gen.MBT
ESET-NOD32Win32/InstallCore.Gen.A potentially unwanted
AvastWin32:Dropper-gen [Drp]
Kasperskynot-a-virus:AdWare.Win32.DealPly.djpnb
BitDefenderApplication.DealAgent.OND
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
MicroWorld-eScanApplication.DealAgent.OND
Ad-AwareApplication.DealAgent.OND
SophosInnoMod (PUA)
ComodoApplicUnwnt@#15qatxlzxwdbr
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionArtemis
FireEyeGeneric.mg.9f6184ccaeadcacf
EmsisoftApplication.DealAgent.OND (B)
SentinelOneStatic AI – Suspicious PE
JiangminAdWare.DealPly.mswt
WebrootAdware.Installcore
MicrosoftTrojan:Win32/Occamy.CC5
ZoneAlarmnot-a-virus:AdWare.Win32.DealPly.heur
GDataWin32.Application.InstallCore.LR@gen
McAfeeArtemis!9F6184CCAEAD
VBA32Malware-Cryptor.2LA.gen
MalwarebytesMalware.AI.4285602921
PandaTrj/CI.A
RisingAdware.InstallCore!1.AB2C (CLASSIC)
YandexPUA.DealPly!W1yl9ZoLu/k
FortinetAdware/DealPly
AVGWin32:Dropper-gen [Drp]

How to remove Malware.AI.4285602921?

Malware.AI.4285602921 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment