Categories: Malware

What is “W32/Sality.AO”?

The W32/Sality.AO file is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

What W32/Sality.AO virus can do?

  • Freezing computer.
  • New home page in browsers.
  • Ads and pop-ups on desktop and browser.
  • Very slow loading speed of webpages.
  • Computer work slower then usual.

How to determine W32/Sality.AO?


General:

Operating System: Windows 7 / 8 / 8.1 / 10 Virus Name: Trojan.Generic.D1F30C31

File Info:

Name: agspluginwizard.exe

Size: 635392

Type: PE32 executable (GUI) Intel 80386, for MS Windows

MD5: 59c1ebf2f8195aaa8675b00f0576db87

SHA1: f375662a0ee8619a1935f9ac9d471885167639fe

SH256: 4f3245300467af02ca08db966515bfe7688a58890e609e1ae80073e26f51495d

Version Info:

[No Data]

W32/Sality.AO also known as:

ALYac Trojan.GenericKD.32705585
APEX Malicious
AVG Win32:Vitro
Acronis suspicious
Ad-Aware Trojan.GenericKD.32705585
AegisLab Trojan.Win32.Generic.4!c
Alibaba Virus:Win32/Virut.344a3542
Arcabit Trojan.Generic.D1F30C31
Avast Win32:Vitro
Baidu Win32.Virus.Virut.gen
BitDefender Trojan.GenericKD.32705585
BitDefenderTheta Gen:NN.ZexaCO3.32250.Mq0@aSQK2xcG
CAT-QuickHeal Trojan.Occamy
Comodo Virus.Win32.Virut.CE@5jedjj
CrowdStrike win/malicious_confidence_100% (W)
Cybereason malicious.a0ee86
Cylance Unsafe
Cyren W32/Trojan.BRVY-1568
DrWeb Win32.Virut.9784
ESET-NOD32 Win32/Virut.NBP
Endgame malicious (high confidence)
FireEye Generic.mg.59c1ebf2f8195aaa
Fortinet W32/Virut.CE
GData Trojan.GenericKD.32705585
Ikarus Virus.Win32.Virut
Invincea heuristic
MAX malware (ai score=95)
Malwarebytes Virus.Agent
McAfee W32/Virut.rem.L
McAfee-GW-Edition BehavesLike.Win32.PWSZbot.jt
MicroWorld-eScan Trojan.GenericKD.32705585
Microsoft Trojan:Win32/Occamy.C
Panda W32/Sality.AO
SentinelOne DFI – Malicious PE
Sophos Mal/Generic-S
Symantec W32.Virut.CF
TotalDefense Win32/Virut.17408
TrendMicro TROJ_GEN.R002C0OKB19
TrendMicro-HouseCall TROJ_GEN.R002C0OKB19
Webroot W32.Virus.Gen
Yandex Win32.Virut.AB.Gen

How to remove W32/Sality.AO?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

MSIL/GenKryptik.GXIZ information

The MSIL/GenKryptik.GXIZ is considered dangerous by lots of security experts. When this infection is active,…

49 mins ago

Malware.AI.2789448175 (file analysis)

The Malware.AI.2789448175 is considered dangerous by lots of security experts. When this infection is active,…

54 mins ago

Jalapeno.1878 removal instruction

The Jalapeno.1878 is considered dangerous by lots of security experts. When this infection is active,…

54 mins ago

What is “Trojan.Heur3.LPT.YmKfaKBcBekib”?

The Trojan.Heur3.LPT.YmKfaKBcBekib is considered dangerous by lots of security experts. When this infection is active,…

59 mins ago

How to remove “Worm.Win32.Vobfus.exmt”?

The Worm.Win32.Vobfus.exmt is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago

About “TrojanDownloader:Win32/Beebone.JO” infection

The TrojanDownloader:Win32/Beebone.JO is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago