Malware

About “Malware.AI.3011552369” infection

Malware Removal

The Malware.AI.3011552369 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3011552369 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.3011552369?


File Info:

name: 6006B969CD2C8C7623CD.mlw
path: /opt/CAPEv2/storage/binaries/03e61c5db3cda9b953903c187a9f1fac7efc193883dd7d825c36ea3d7608e5be
crc32: 079ACE87
md5: 6006b969cd2c8c7623cdf3aede4ad2e9
sha1: 5035e3e8c6f29e2826424fe6cdffd6ac838f1d83
sha256: 03e61c5db3cda9b953903c187a9f1fac7efc193883dd7d825c36ea3d7608e5be
sha512: 7ddb20a1c5d3747a7afccd6a1351c4df3e44fb39caa439f68142df9bc1dd9a577fb6eca7616ecc084969c7e1ee01175123c96fa762dafd707f309165e1dcf741
ssdeep: 6144:qKrs8/5NV2Dc+I7cyzvO/6qIuQYAH6sINlmiZYL+qiCYpRJDFKzRzL+GJge1:3s8/5LLcRIal3hnXRJWzL+GT
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B9A46C2936941077E0B752BCD6E9858AF3B03426032195DF14E90FDA5B33EE9B93A353
sha3_384: c2b92f7b48ba8ff8a67c5b515d576433bbeb7180c1b0542ab0af6bd0ffdbfa53b40c63b96325d362199e8989b2846680
ep_bytes: e8a2220000e989feffff2da403000074
timestamp: 1997-08-20 12:02:36

Version Info:

CompanyName: Disc Soft Ltd
FileVersion: 4.49.1.0356
LegalCopyright: © 2000-2013 Disc Soft Ltd.
FileDescription: DAEMON Tools Lite
InternalName: DTLite.exe
OriginalFilename: DTLite.exe
ProductName: DAEMON Tools Lite
ProductVersion: 4.49.1.0356
Translation: 0x0409 0x04e4

Malware.AI.3011552369 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Malicious.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.6006b969cd2c8c76
McAfeeGenericRXQX-DL!6006B969CD2C
MalwarebytesMalware.AI.3011552369
ZillyaTrojan.Lethic.Win32.6602
K7AntiVirusTrojan ( 0053fcba1 )
AlibabaTrojan:Win32/Lethic.8f7f933e
K7GWTrojan ( 0053fcba1 )
Cybereasonmalicious.9cd2c8
CyrenW32/Lethic.ZCRN-1312
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Lethic.AF
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Malware.Lethic-6827818-0
KasperskyUDS:Trojan.Multi.GenericML.xnet
BitDefenderTrojan.Agent.DHOH
NANO-AntivirusTrojan.Win32.Proxy2.fktxcj
MicroWorld-eScanTrojan.Agent.DHOH
AvastWin32:Malware-gen
TencentWin32.Trojan.Agent.Wjry
Ad-AwareTrojan.Agent.DHOH
SophosMal/Generic-S
ComodoTrojWare.Win32.Lethic.RB@844b30
DrWebTrojan.Proxy2.287
TrendMicroTROJ_GEN.R002C0WKS21
McAfee-GW-EditionBehavesLike.Win32.Dropper.gm
EmsisoftTrojan.Agent.DHOH (B)
SentinelOneStatic AI – Malicious PE
GDataTrojan.Agent.DHOH
JiangminTrojanProxy.Lethic.azy
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Generic.ASMalwS.28C206B
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
Acronissuspicious
ALYacTrojan.Agent.DHOH
MAXmalware (ai score=81)
CylanceUnsafe
TrendMicro-HouseCallTROJ_GEN.R002C0WKS21
IkarusTrojan.Agent
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Generic.AP.21D3CE!tr
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.3011552369?

Malware.AI.3011552369 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment