Malware

How to remove “Ser.Symmi.286”?

Malware Removal

The Ser.Symmi.286 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ser.Symmi.286 virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Network anomalies occured during the analysis.
  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Deletes its original binary from disk
  • Generates some ICMP traffic
  • Uses suspicious command line tools or Windows utilities

How to determine Ser.Symmi.286?


File Info:

crc32: 0DE3DA94
md5: 5448378ca104ce8aab512de1b955bdaf
name: 5448378CA104CE8AAB512DE1B955BDAF.mlw
sha1: 504018d8951d0b445e9e6f55ec3d05293e79117b
sha256: 5b50621f29b398e7e62d34451a3f4b96a19edc8413105599a4b8076eac1b2822
sha512: 760bd908378f3fa93126087f1784de6119066820ae182f5fc731988bf6c3e147d4fce2dd833302f2fdc219bf21eb84eae3a31e6e56662e5fa7a6250d96e8bc60
ssdeep: 24576:Yhococ2+/ir/Fjr2PXeDlojns/g0JNzjel2dkY8AvrbWvcO4zsAvIK:Yic2+/igIg7CwAT6vcO4zsAQK
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Ser.Symmi.286 also known as:

K7AntiVirusTrojan ( 0053feb81 )
Elasticmalicious (high confidence)
DrWebTrojan.InstallCube.3758
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacGen:Variant.Ser.Symmi.286
CylanceUnsafe
ZillyaTrojan.Ekstak.Win32.14338
SangforTrojan.Win32.Save.a
AlibabaTrojan:Win32/Katusha.7851978c
K7GWTrojan ( 0053feb81 )
Cybereasonmalicious.ca104c
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GMBA
APEXMalicious
AvastWin32:AdwareSig [Adw]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Ser.Symmi.286
NANO-AntivirusTrojan.Win32.Ekstak.fjsaqf
MicroWorld-eScanGen:Variant.Ser.Symmi.286
TencentMalware.Win32.Gencirc.10cca5c5
Ad-AwareGen:Variant.Ser.Symmi.286
SophosGeneric PUA FA (PUA)
ComodoApplication.Win32.ICLoader.GS@84429a
BitDefenderThetaGen:NN.ZexaF.34170.0rX@aGzDtLgi
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionPacked-FME!5448378CA104
FireEyeGeneric.mg.5448378ca104ce8a
EmsisoftApplication.AdLoad (A)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Ekstak.uis
AviraTR/ICLoader.Gen8
Antiy-AVLTrojan/Generic.ASMalwS.28C27E9
MicrosoftSoftwareBundler:Win32/ICLoader
ArcabitTrojan.Ser.Symmi.286
ZoneAlarmTrojan-PSW.Win32.Azorult.gen
GDataGen:Variant.Ser.Symmi.286
AhnLab-V3PUP/Win32.ICLoader.R241490
Acronissuspicious
McAfeePacked-FME!5448378CA104
MAXmalware (ai score=80)
VBA32BScope.Trojan.Downloader
MalwarebytesGeneric.Trojan.Malicious.DDS
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.AA23 (CLASSIC)
YandexTrojan.GenAsa!XePcX23MEso
IkarusPUA.FileTour
FortinetW32/CoinMiner.GYQC!tr
AVGWin32:AdwareSig [Adw]

How to remove Ser.Symmi.286?

Ser.Symmi.286 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment