Adware

Adware.Symmi.5238 (file analysis)

Malware Removal

The Adware.Symmi.5238 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.Symmi.5238 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Adware.Symmi.5238?


File Info:

name: 14534EF6C06A3C2CF04D.mlw
path: /opt/CAPEv2/storage/binaries/8686d8bae0c7d2ea0a0fa5cd35f5be531d511fb78128df2f3a872b1338d911d9
crc32: 929B7967
md5: 14534ef6c06a3c2cf04d1fe6368c21a7
sha1: 4817bf0ad670fc6e0ddd31276b6e24e93d6c64a4
sha256: 8686d8bae0c7d2ea0a0fa5cd35f5be531d511fb78128df2f3a872b1338d911d9
sha512: 3324687f0fe4c15ef126595389b6729a50092eb776c7fddc7d82d807e3a7f9c89ee3488ef0fd47cda2ee0f148d1882825a9fc6150ac28886ca5fd40fc73d3865
ssdeep: 12288:gsRv7nPMtu7/Oq5z0HH2aI3eI3ACQ/WzcxLpsFwBl01vy1hi3TpghTn4D:g0TPVrOGzgHiujCQ/WzcZAA01vy88Tn
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18A158F26F2D18433D2731A38AC6B939D9929BF102E3C644A7BF41E4CAF3974179252D7
sha3_384: ec1a2d2b692d782e7ede5c0c757f1ce21f4771a5371d6c3d1e2864307af8b0e4e6faa00b512f66dc8ba53b8b3f97120f
ep_bytes: 558becb9060000006a006a004975f953
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Adware.Symmi.5238 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Delf.4!c
MicroWorld-eScanGen:Variant.Adware.Symmi.5238
ClamAVWin.Trojan.Delf-9286
FireEyeGeneric.mg.14534ef6c06a3c2c
SkyhighBehavesLike.Win32.Xanfpezes.dh
McAfeeArtemis!14534EF6C06A
Cylanceunsafe
SangforTrojan.Win32.Save.a
AlibabaTrojanClicker:Win32/Delphi.ba4a7114
Cybereasonmalicious.ad670f
ArcabitTrojan.Adware.Symmi.D1476
BitDefenderThetaGen:NN.ZelphiF.36744.4GW@a0lVm1cb
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/TrojanClicker.Delf.NHG
APEXMalicious
CynetMalicious (score: 100)
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Adware.Symmi.5238
NANO-AntivirusTrojan.Win32.Delf.dzlxoa
AvastWin32:Adware-gen [Adw]
TencentMalware.Win32.Gencirc.114ecde8
EmsisoftGen:Variant.Adware.Symmi.5238 (B)
F-SecureTrojan.TR/Dldr.Delphi.Gen
DrWebTrojan.Click.23635
VIPREGen:Variant.Adware.Symmi.5238
SophosMal/Behav-417
IkarusTrojan-Dropper.Agent
WebrootTrojan:Win32/Trufip!rts
GoogleDetected
AviraTR/Dldr.Delphi.Gen
Antiy-AVLTrojan/Win32.Delf
KingsoftWin32.Troj.Unknown.a
XcitiumMalware@#3fuxo07gtdi5t
MicrosoftTrojan:Win32/Trufip!rts
ViRobotTrojan.Win32.Delf.927232
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataGen:Variant.Adware.Symmi.5238
VaristW32/Delf.AL.gen!Eldorado
AhnLab-V3Trojan/Win32.Xema.C140837
VBA32BScope.Trojan.Click
ALYacGen:Variant.Adware.Symmi.5238
MAXmalware (ai score=99)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
RisingTrojan.Delf!1.6483 (CLASSIC)
YandexTrojan.GenAsa!msInNQu8d+g
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.798490.susgen
FortinetW32/Delf.FIP!tr
AVGWin32:Adware-gen [Adw]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Adware.Symmi.5238?

Adware.Symmi.5238 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment