Malware

Malware.AI.545652210 information

Malware Removal

The Malware.AI.545652210 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.545652210 virus can do?

  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Malware.AI.545652210?


File Info:

crc32: 45A88797
md5: 6866f44acefaaa54bdb00f01febb0e8d
name: 6866F44ACEFAAA54BDB00F01FEBB0E8D.mlw
sha1: 0d26a6e0a4fb8cc49e904db46f5a4880b1c9915f
sha256: 1deab4d148771bf1a9de8c95fab1049b5afb7bc9fc77e5f1eaa52cf18fcd0a69
sha512: 019d8f7eb277ce627c377e648b68510c7f51cd308c72a8a04b8409f78a19446093234a06ea139321cf392c042514baa69cfa1a5141bf253e1f17bb2a93e9ac80
ssdeep: 6144:9w/CdZsbpEJ4BiPE/o6Tu2NTyNUMJtg9qjVazcLOnv/pXOHsSEZhHhqvsyNrmwS:YgsbiJ0a6hYHjVazxv/c7EAvsyNrTT
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyright xa9 All Rights Reserved
InternalName: Potolar
FileVersion: 3.3.9.59
CompanyName: Felelurobog
LegalTrademarks:
ProductName: Potucu Cucaroc
ProductVersion: 1.3.20.51
FileDescription:
OriginalFilename: potolar.exe

Malware.AI.545652210 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusAdware ( 00529a881 )
LionicAdware.Win32.DealPly.2!c
Elasticmalicious (high confidence)
DrWebAdware.DealPly.260
CynetMalicious (score: 100)
CAT-QuickHealAdware.Dealply.ZZ8
CylanceUnsafe
ZillyaAdware.DealPly.Win32.98728
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:Win32/DealPly.11f8234e
K7GWAdware ( 00529a881 )
Cybereasonmalicious.acefaa
CyrenW32/DealPly.BJ.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/DealPly.UD potentially unwanted
APEXMalicious
AvastWin32:Adware-gen [Adw]
Kasperskynot-a-virus:AdWare.Win32.DealPly.dcaqu
BitDefenderAdware.DealPly.1.Gen
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
MicroWorld-eScanAdware.DealPly.1.Gen
TencentWin32.Adware.Dealply.Wozu
Ad-AwareAdware.DealPly.1.Gen
SophosDealPly Updater (PUA)
ComodoApplicUnwnt@#mgj6q2dpsxkt
BitDefenderThetaGen:NN.ZelphiF.34266.zmKfairVyrpi
TrendMicroPUA_DEALPLY.SM
McAfee-GW-EditionBehavesLike.Win32.Generic.gc
FireEyeGeneric.mg.6866f44acefaaa54
EmsisoftAdware.DealPly.1.Gen (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Adware.Gen
AviraHEUR/AGEN.1126504
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.1DC92A4
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataAdware.DealPly.1.Gen
AhnLab-V3PUP/Win32.DealPly.C1947016
Acronissuspicious
McAfeeArtemis!6866F44ACEFA
MAXmalware (ai score=63)
VBA32Adware.DealPly
MalwarebytesMalware.AI.545652210
PandaTrj/Genetic.gen
TrendMicro-HouseCallPUA_DEALPLY.SM
RisingAdware.DealPly!1.AA42 (CLASSIC)
YandexPUA.DealPly!kyZVOnoITQg
IkarusPUA.DealPly
MaxSecureTrojan.Malware.300983.susgen
FortinetAdware/DealFly
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Malware.AI.545652210?

Malware.AI.545652210 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment