Malware

About “Win32/DealPly.QJ potentially unwanted” infection

Malware Removal

The Win32/DealPly.QJ potentially unwanted is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/DealPly.QJ potentially unwanted virus can do?

  • Creates RWX memory
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/DealPly.QJ potentially unwanted?


File Info:

crc32: 573EF254
md5: 465cba8703ed74bd25d39097fede3578
name: 465CBA8703ED74BD25D39097FEDE3578.mlw
sha1: 68eed9f02f3449e82e7c6fabb73ddf9832fea366
sha256: 2390077a51c760c5cb6aaf01ca7f1207bde86e77bc58d3e0a843c8de96e8ba28
sha512: 3c5fa4df35f2e7e06773ac0f7f3f18393de2d1f56e84c4b49699ef7c04865aab6dae94d88e01af6639611fa5f3b5a4eb12f392ed95457b1544060d5b2b2f7573
ssdeep: 24576:8vfLOAkaSSEDOn0FLe8ZDS2V1M2C/2btQ1BcSWUeMCFbwJrZ40CG7K56X5P:8hSj3DOObK1uSbeKJF7256p
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9
InternalName: Cakor
FileVersion: 1.5.8.15
CompanyName: Tabidarobipe
LegalTrademarks:
ProductName: Mora Keraret
ProductVersion: 2.3.44.25
FileDescription:
OriginalFilename: CakorDunimo.exe
Translation: 0x0409 0x04b0

Win32/DealPly.QJ potentially unwanted also known as:

BkavW32.AIDetect.malware2
K7AntiVirusAdware ( 005497bb1 )
LionicRiskware.Win32.Generic.1!c
Elasticmalicious (high confidence)
DrWebAdware.DealPly.929
CynetMalicious (score: 100)
CAT-QuickHealPUA.PrifouIH.S17302626
CylanceUnsafe
ZillyaTool.Bundler.Win32.7147
CrowdStrikewin/malicious_confidence_100% (D)
K7GWAdware ( 005497bb1 )
Cybereasonmalicious.703ed7
CyrenW32/DealPly.X.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/DealPly.QJ potentially unwanted
APEXMalicious
AvastWin32:DealPly-AJ [Adw]
Kasperskynot-a-virus:AdWare.Win32.DealPly.dfnhw
BitDefenderAdware.DealPly.1.Gen
NANO-AntivirusVirus.Win32.Gen.ccmw
MicroWorld-eScanAdware.DealPly.1.Gen
TencentMalware.Win32.Gencirc.114b358e
Ad-AwareAdware.DealPly.1.Gen
SophosDealPly Updater (PUA)
ComodoApplicUnwnt@#2i6u0s33fkn68
BitDefenderThetaGen:NN.ZelphiF.34294.oU0@aO6hmoii
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.vh
FireEyeAdware.DealPly.1.Gen
EmsisoftAdware.DealPly.1.Gen (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.DealPly.hzqu
AviraHEUR/AGEN.1104226
Antiy-AVLTrojan/Generic.ASMalwS.2466FEA
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataAdware.DealPly.1.Gen
AhnLab-V3PUP/Win32.DealPly.R225128
Acronissuspicious
McAfeeGenericRXET-JE!465CBA8703ED
MAXmalware (ai score=98)
VBA32Adware.DealPly
MalwarebytesAdware.DealPly
PandaTrj/Genetic.gen
RisingAdware.DealPly!1.AA42 (CLASSIC)
YandexTrojan.GenAsa!TkpFAdZIY1o
IkarusPUA.DealPly
MaxSecureWin.MxResIcn.Heur.Gen
FortinetW32/AGEN.1033829!tr
AVGWin32:DealPly-AJ [Adw]
Paloaltogeneric.ml

How to remove Win32/DealPly.QJ potentially unwanted?

Win32/DealPly.QJ potentially unwanted removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment