Malware

Downloader.Lmn.6109 removal

Malware Removal

The Downloader.Lmn.6109 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Downloader.Lmn.6109 virus can do?

  • Unconventionial language used in binary resources: Russian
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Downloader.Lmn.6109?


File Info:

name: C2A79D19D3BDA18A255F.mlw
path: /opt/CAPEv2/storage/binaries/6db44dfa4198ea0da1bccffe72bbe8a1c6b894e55fe6adb7f466534aea24d4ce
crc32: 5CD68620
md5: c2a79d19d3bda18a255fd21c9cb763c4
sha1: afbfdf435356443a719f4ed9b75f4eb39ecbf89b
sha256: 6db44dfa4198ea0da1bccffe72bbe8a1c6b894e55fe6adb7f466534aea24d4ce
sha512: ec3a9281f91cc297baab539d8cf4d0131f96c1a3407af2f9c1b75b390ad9aaa8415043377a2e24a647040ca9958b07df1e60dc57f12a8fef5945566c3f61fd77
ssdeep: 6144:wu6TV51+Pml3Z+L7EjwhsyxYDoJEFxkhRkDWUpTYB2vd07y:I51Kml3wXEjwWyyDoJEo6XYBez
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11B845C22B780E476C15302B2AD15DAB4A5F9BCB2D9350547B7E82B2DDFB01C29936F43
sha3_384: a0058b48b61b0f0fa73c2cbcf5317c55bc6291784a1f8b83d1e872470fb13d8f4bc871a0fc3b769f4ddbb9a5df8955bf
ep_bytes: e8ce7c0000e979feffffcccccccccccc
timestamp: 2014-09-12 09:52:07

Version Info:

0: [No Data]

Downloader.Lmn.6109 also known as:

BkavW32.AIDetectMalware
LionicRiskware.Win32.Generic.1!c
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Zusy.459316
FireEyeGeneric.mg.c2a79d19d3bda18a
CAT-QuickHealDownloader.Lmn.6109
ALYacGen:Variant.Zusy.459316
Cylanceunsafe
ZillyaAdware.LoadMoney.Win32.83397
SangforTrojan.Win32.Save.a
K7AntiVirusAdware ( 004b87be1 )
AlibabaDownloader:Win32/LoadMoney.8ffe8495
K7GWAdware ( 004b87be1 )
ArcabitTrojan.Zusy.D70234
BitDefenderThetaGen:NN.ZexaF.36348.xqW@aa11k4bk
CyrenW32/S-19f40836!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Adware.LoadMoney.RM
APEXMalicious
CynetMalicious (score: 100)
Kasperskynot-a-virus:HEUR:Downloader.Win32.Generic
BitDefenderGen:Variant.Zusy.459316
NANO-AntivirusTrojan.Win32.LMN.dtfnew
AvastWin32:AdwareX-gen [Adw]
TencentTrojan-Downloader.Win32.Convagent.hc
TACHYONTrojan/W32.Agent.390144.IJ
EmsisoftGen:Variant.Zusy.459316 (B)
F-SecureAdware.ADWARE/Adware.Gen4
DrWebTrojan.LoadMoney.841
VIPREGen:Variant.Zusy.459316
TrendMicroTROJ_GEN.R002C0PH223
McAfee-GW-EditionBehavesLike.Win32.Infected.fh
SophosGeneric Reputation PUA (PUA)
SentinelOneStatic AI – Suspicious PE
JiangminDownloader.LMN.kxf
AviraADWARE/Adware.Gen4
Antiy-AVLRiskWare[Downloader]/Win32.LMN
XcitiumTrojWare.Win32.Rogue.OOTF@5bltcy
ViRobotAdware.Loadmoney.390144.DR
ZoneAlarmnot-a-virus:HEUR:Downloader.Win32.Generic
GDataGen:Variant.Zusy.459316
GoogleDetected
AhnLab-V3PUP/Win.DomaIQ.R511485
McAfeeGenericRXTZ-CW!C2A79D19D3BD
MAXmalware (ai score=88)
VBA32Downloader.LMN
MalwarebytesLoadMoney.Adware.Bundler.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0PH223
RisingDownloader.LMN!8.3137 (TFE:5:Ehsojzc2qrQ)
IkarusVirus.Win32.Cryptor
FortinetAdware/LoadMoney.RM
AVGWin32:AdwareX-gen [Adw]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Downloader.Lmn.6109?

Downloader.Lmn.6109 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment