Worm

What is “Worm:Win32/Allaple.A”?

Malware Removal

The Worm:Win32/Allaple.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm:Win32/Allaple.A virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Anomalous binary characteristics
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Worm:Win32/Allaple.A?


File Info:

name: 21FD7160FB0DAB3FF588.mlw
path: /opt/CAPEv2/storage/binaries/05afd7aa5a120f1ad7d2d977eeb56c7ded537dc939f2fc69287849ec5418b1c4
crc32: F4513FA5
md5: 21fd7160fb0dab3ff588bc928d8e5079
sha1: 33e877d862791b0affb6a733b0a5e440fe6b142e
sha256: 05afd7aa5a120f1ad7d2d977eeb56c7ded537dc939f2fc69287849ec5418b1c4
sha512: 5c22d5842ce557d5897f0e872f44926234093e8d1a7e99d5415b07455c3818f3e73103d12cac9ea34f5efc4e9682a74aea0e1da060aff1c1b84d1cfd196904c3
ssdeep: 1536:oBkXgN7SAgrKz4HoEch0GZk/DZ0K2WoNWAka55KR5YrZ8E:vXggAgr3HoFZkLZ0K2JMswYVN
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14843AEDFE6A8F9C9F8B7243A4334E697B96C1C4066C811234E340FEFF881B42664859D
sha3_384: 98c332c5cbcec4175ffd9b5d3c7db996fce4ff3e32d68b5f30e88e333f116d4024954995d327132aa2200738bc675fb5
ep_bytes: bde9fa400033dec74424e4be2f4100bd
timestamp: 1970-01-25 07:06:40

Version Info:

0: [No Data]

Worm:Win32/Allaple.A also known as:

BkavW32.CrypticB.Trojan
tehtrisGeneric.Malware
DrWebTrojan.Starman.6712
MicroWorld-eScanWin32.Worm.Allaple.Gen.DAM
ClamAVWin.Worm.Allaple-197
FireEyeGeneric.mg.21fd7160fb0dab3f
CAT-QuickHealWorm.Allaple.A4
SkyhighBehavesLike.Win32.RAHack.qc
McAfeeW32/RAHack
Cylanceunsafe
ZillyaWorm.Allaple.Win32.1
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 004d4ed01 )
AlibabaWorm:Win32/Allaple.f087d894
K7GWTrojan ( 004d4ed01 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaAI:FileInfector.721E4B461A
VirITWorm.Win32.Allaple.J
SymantecW32.Rahack.H
Elasticmalicious (high confidence)
ESET-NOD32Win32/Allaple
ZonerTrojan.Win32.22092
APEXMalicious
CynetMalicious (score: 100)
KasperskyNet-Worm.Win32.Allaple.e
BitDefenderWin32.Worm.Allaple.Gen.DAM
NANO-AntivirusVirus.Win32.Allaple.bkbmt
AvastWin32:Allaple [Wrm]
RisingWorm.Allaple!1.AB29 (CLASSIC)
TACHYONWorm/W32.Allaple.Gen
SophosW32/Allaple-F
F-SecureNet-Worm:W32/Allaple.gen!B
BaiduWin32.Trojan.Kryptik.gf
VIPREWin32.Worm.Allaple.Gen.DAM
TrendMicroWORM_ALLAPLE.IK
Trapminemalicious.high.ml.score
EmsisoftWin32.Worm.Allaple.Gen.DAM (B)
IkarusWorm.Allaple
GDataWin32.Worm.Allaple.Gen.DAM
JiangminWorm/Allaple.Gen
WebrootW32.Allaple.Gen
GoogleDetected
AviraTR/Crypt.ZPACK.Gen
Antiy-AVLWorm[Net]/Win32.Allaple.gen
KingsoftWorm.AllApleT.cz.67868
XcitiumNetWorm.Win32.Allaple.GEN@1ei64a
ArcabitWin32.Worm.Allaple.Gen.DAM
ViRobotWorm.Win32.Allaple.Gen
ZoneAlarmNet-Worm.Win32.Allaple.e
MicrosoftWorm:Win32/Allaple.A
VaristW32/RAHack.A.gen!Eldorado
AhnLab-V3Win-Trojan/Starman.Gen
Acronissuspicious
VBA32OScope.Malware-Cryptor.Win32.Allaple
ALYacWin32.Worm.Allaple.Gen.DAM
MAXmalware (ai score=100)
PandaW32/Rahack.gen.worm
TrendMicro-HouseCallWORM_ALLAPLE.IK
TencentWorm.Win32.Allaple.kc
YandexWorm.Allaple.Gen
SentinelOneStatic AI – Malicious PE
MaxSecurePoly.Worm.Allaple
FortinetW32/Allaple!worm
AVGWin32:Allaple [Wrm]
Cybereasonmalicious.862791
DeepInstinctMALICIOUS

How to remove Worm:Win32/Allaple.A?

Worm:Win32/Allaple.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment