Worm

Worm:Win32/Allaple.A malicious file

Malware Removal

The Worm:Win32/Allaple.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm:Win32/Allaple.A virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Worm:Win32/Allaple.A?


File Info:

name: 0439266CE05121B0EC58.mlw
path: /opt/CAPEv2/storage/binaries/271ff40a7871dc17b0d8748c8462d6d20eac9565546de569f45eb2330555435a
crc32: EFA25DFB
md5: 0439266ce05121b0ec5865a3d6891f0d
sha1: 5694ed84d24859c52d6bb37586cd8920f84f9a91
sha256: 271ff40a7871dc17b0d8748c8462d6d20eac9565546de569f45eb2330555435a
sha512: d87e6b6f45fddba39c8f948b13681e455428a7016f295b96b3e1579576679405e02ff1d8633f2f240e724ca18f7a9b6ccc13b47962f296c9ad8d012c7db7c614
ssdeep: 1536:16lpq95jss597HqtpyE2x7IVf3j2EZBH6MqC7eaU8Ciu3:1Nnz597KtpT2ivyEvKcCz
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16E43BFDE8168CFC6E4B73C3C5C81BEEDB604441871E8859B2AB1DBEEF49656107EC486
sha3_384: f4cc68780eb618d44792407f29562297580d8b3c58569b8ee4f5eb86bfdf37ca13ee201582435cc3248a849ce3b6cdab
ep_bytes: 23ffc7442490a2a3400023ff8b442490
timestamp: 1987-06-04 15:04:11

Version Info:

0: [No Data]

Worm:Win32/Allaple.A also known as:

BkavW32.CrypticB.Trojan
LionicWorm.Win32.Allaple.mzMC
Elasticmalicious (high confidence)
MicroWorld-eScanWin32.Worm.Allaple.Gen
FireEyeGeneric.mg.0439266ce05121b0
CAT-QuickHealI-Worm.Allaple.gen
SkyhighBehavesLike.Win32.RAHack.qc
McAfeeW32/RAHack
MalwarebytesMachineLearning/Anomalous.100%
ZillyaWorm.Allaple.Win32.1
SangforSuspicious.Win32.Save.a
K7AntiVirusNetWorm ( f10000021 )
BitDefenderWin32.Worm.Allaple.Gen
K7GWNetWorm ( f10000021 )
Cybereasonmalicious.4d2485
ArcabitWin32.Worm.Allaple.Gen
BitDefenderThetaAI:FileInfector.9E9A3AD516
VirITWorm.Win32.Allaple.J
SymantecW32.Rahack.H
ESET-NOD32Win32/Allaple
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Worm.Allaple-315
KasperskyNet-Worm.Win32.Allaple.d
AlibabaMalware:Win32/km_28f75.None
NANO-AntivirusVirus.Win32.Allaple.bkbmt
ViRobotWorm.Win32.Allaple.Gen
RisingWorm.Allaple!1.AB29 (CLASSIC)
SophosW32/Allaple-F
BaiduWin32.Trojan.Kryptik.gf
F-SecureNet-Worm:W32/Allaple.gen!B
DrWebTrojan.Starman.6712
VIPREWin32.Worm.Allaple.Gen
TrendMicroWORM_ALLAPLE.IK
Trapminemalicious.high.ml.score
EmsisoftWin32.Worm.Allaple.Gen (B)
SentinelOneStatic AI – Malicious PE
JiangminWorm/Allaple.Gen
VaristW32/EmailWorm.AMV
AviraWORM/Allaple.Gen
MAXmalware (ai score=85)
Antiy-AVLWorm[Net]/Win32.Allaple.gen
KingsoftWorm.AllApleT.cz.67868
XcitiumNetWorm.Win32.Allaple.GEN@1ei64a
MicrosoftWorm:Win32/Allaple.A
ZoneAlarmNet-Worm.Win32.Allaple.d
GDataWin32.Worm.Allaple.Gen
GoogleDetected
AhnLab-V3Win-Trojan/Starman.Gen
Acronissuspicious
VBA32OScope.Malware-Cryptor.Win32.Allaple
ALYacWin32.Worm.Allaple.Gen
TACHYONWorm/W32.Allaple.Gen
DeepInstinctMALICIOUS
Cylanceunsafe
PandaW32/Rahack.gen.worm
TrendMicro-HouseCallWORM_ALLAPLE.IK
TencentWorm.Win32.Allaple.e
YandexWorm.Allaple.Gen
IkarusTrojan.Worm.Allaple
MaxSecurePoly.Worm.Allaple
FortinetW32/Allaple.gen!tr
AVGWin32:Allaple [Wrm]
AvastWin32:Allaple [Wrm]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Worm:Win32/Allaple.A?

Worm:Win32/Allaple.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment