Worm

Net-Worm.Win32.Allaple.d (file analysis)

Malware Removal

The Net-Worm.Win32.Allaple.d is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Net-Worm.Win32.Allaple.d virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Net-Worm.Win32.Allaple.d?


File Info:

name: 73860FF1C8FC98AEB6B5.mlw
path: /opt/CAPEv2/storage/binaries/fe3c8095e0e53160c042bcb5c1f66c5117fba2f7e3aeb31441d1e24a1a6ebebc
crc32: 5379305E
md5: 73860ff1c8fc98aeb6b587f921c025e2
sha1: 83930849b3c0345adb093167fc53f81f7167e79e
sha256: fe3c8095e0e53160c042bcb5c1f66c5117fba2f7e3aeb31441d1e24a1a6ebebc
sha512: cca0a1bb81ae281913ea2b6ca96cd997193082761df96295808a16b821082eacf984a2818f6407581c77d1015e644e1d2f2118466909605419d8c87cb9c3505b
ssdeep: 1536:DgdzhgQQk/jGh7xXCLhoW0Rqohls95afhR:DgdhgQT/mVDtcoHDL
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C343BEEF81289BC1EADB7C3C45457676FABA0C5A33EA61B42E352FDCC8861101B4D65C
sha3_384: 7252aa1bd6477d8e9c73ac819e0d7e0af9bdfafa733f9508b9b019da095886da5fd4b9757039bb2196ae3507bfb94473
ep_bytes: 660bc283c002c744249caeac4000660b
timestamp: 1988-04-02 17:44:51

Version Info:

0: [No Data]

Net-Worm.Win32.Allaple.d also known as:

BkavW32.CrypticB.Trojan
LionicWorm.Win32.Allaple.p!c
Elasticmalicious (high confidence)
MicroWorld-eScanWin32.Worm.Allaple.Gen
FireEyeGeneric.mg.73860ff1c8fc98ae
CAT-QuickHealI-Worm.Allaple.gen
SkyhighBehavesLike.Win32.RAHack.qc
ALYacWin32.Worm.Allaple.Gen
MalwarebytesMalware.Heuristic.2069
ZillyaWorm.Allaple.Win32.1
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaWorm:Win32/Allaple.a7255255
K7GWNetWorm ( f10000021 )
K7AntiVirusNetWorm ( f10000021 )
BitDefenderThetaAI:FileInfector.9E9A3AD516
VirITWorm.Win32.Allaple.J
SymantecW32.Rahack.H
ESET-NOD32Win32/Allaple
APEXMalicious
TrendMicro-HouseCallWORM_ALLAPLE.IK
ClamAVWin.Worm.Allaple-135
KasperskyNet-Worm.Win32.Allaple.d
BitDefenderWin32.Worm.Allaple.Gen
NANO-AntivirusVirus.Win32.Allaple.bkbmt
AvastWin32:Allaple [Wrm]
TencentWorm.Win32.Allaple.e
TACHYONWorm/W32.Allaple.Gen
EmsisoftWin32.Worm.Allaple.Gen (B)
BaiduWin32.Trojan.Kryptik.gf
F-SecureNet-Worm:W32/Allaple.gen!B
DrWebTrojan.Starman.6712
VIPREWin32.Worm.Allaple.Gen
TrendMicroWORM_ALLAPLE.IK
Trapminemalicious.high.ml.score
SophosW32/Allaple-F
IkarusTrojan.Worm.Allaple
JiangminWorm/Allaple.Gen
VaristW32/EmailWorm.AMV
AviraWORM/Allaple.Gen
Antiy-AVLWorm[Net]/Win32.Allaple.gen
KingsoftWorm.AllApleT.cz.67868
MicrosoftWorm:Win32/Allaple.A
XcitiumNetWorm.Win32.Allaple.GEN@1ei64a
ArcabitWin32.Worm.Allaple.Gen
ViRobotWorm.Win32.Allaple.Gen
ZoneAlarmNet-Worm.Win32.Allaple.d
GDataWin32.Worm.Allaple.Gen
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Starman.Gen
Acronissuspicious
McAfeeW32/RAHack
GoogleDetected
MAXmalware (ai score=100)
VBA32OScope.Malware-Cryptor.Win32.Allaple
Cylanceunsafe
PandaW32/Rahack.gen.worm
RisingWorm.Allaple!1.AB29 (CLASSIC)
YandexWorm.Allaple.Gen
SentinelOneStatic AI – Malicious PE
MaxSecurePoly.Worm.Allaple
FortinetW32/Allaple.gen!tr
AVGWin32:Allaple [Wrm]
DeepInstinctMALICIOUS
alibabacloudWorm

How to remove Net-Worm.Win32.Allaple.d?

Net-Worm.Win32.Allaple.d removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment