Malware

What is “Symmi.1180”?

Malware Removal

The Symmi.1180 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Symmi.1180 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • The binary likely contains encrypted or compressed data.
  • Behavior consistent with a dropper attempting to download the next stage.
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
verywell.xan7rafx.biz
re4rwe3sg4744pps5e.info

How to determine Symmi.1180?


File Info:

crc32: 578F4AF0
md5: 4f8895bff54b9f64de794aa15f9c1c70
name: 4F8895BFF54B9F64DE794AA15F9C1C70.mlw
sha1: 44c3d9c188b8a5bea54ee7e5fb3e819ddce6b5c1
sha256: a77f9cca1cd4df1746d54736af9156c9c1c3f5a010478f542c114d338ea527f4
sha512: 008a1b005cad31788046f2c4d11bc20bdc616b5d23d068f89d68b8a2d2b46333686148ed061e4fd43aaa5f4305bd0744916f138aae21791e75efd84905a29ce4
ssdeep: 1536:bFKM2DgwWwxZVi05VqDWXeM8BuIvuDF+Uuj:5h2DZWwxLxORBuI2w
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Symmi.1180 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0040f0751 )
Elasticmalicious (high confidence)
DrWebTrojan.Winlock.6576
CynetMalicious (score: 100)
ALYacGen:Variant.Symmi.1180
CylanceUnsafe
ZillyaTrojan.Weelsof.Win32.152
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaRansom:Win32/Weelsof.25c037e5
K7GWTrojan ( 0040f0751 )
Cybereasonmalicious.ff54b9
SymantecTrojan.Ransomlock!g7
ESET-NOD32a variant of Win32/Kryptik.ALOE
APEXMalicious
AvastWin32:Weelsof-A [Trj]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Symmi.1180
NANO-AntivirusTrojan.Win32.Weelsof.xrbgp
ViRobotTrojan.Win32.A.Weelsof.55296.B
SUPERAntiSpywareRansom.GandCrab/Variant
MicroWorld-eScanGen:Variant.Symmi.1180
TencentWin32.Trojan.Generic.Pgng
Ad-AwareGen:Variant.Symmi.1180
SophosMal/Generic-R + Mal/Weelsof-B
ComodoMalware@#2ofbrpufesr80
F-SecureTrojan.TR/Crypt.ZPACK.Gen
BitDefenderThetaGen:NN.ZexaF.34722.dqW@a4hEjyfi
VIPRETrojan.Win32.Weelsof.b (v)
McAfee-GW-EditionBehavesLike.Win32.Vundo.qc
FireEyeGeneric.mg.4f8895bff54b9f64
EmsisoftGen:Variant.Symmi.1180 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Weelsof.gl
WebrootW32.Rogue.Gen
AviraTR/Crypt.ZPACK.Gen
eGambitGeneric.Malware
Antiy-AVLTrojan/Generic.ASMalwS.EC45EE
KingsoftWin32.Troj.Weelsof.lp.(kcloud)
MicrosoftRansom:Win32/Weelsof.D
ArcabitTrojan.Symmi.D49C
AegisLabTrojan.Win32.Generic.4!c
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Symmi.1180
McAfeeArtemis!4F8895BFF54B
MAXmalware (ai score=100)
VBA32Trojan.Weelsof
MalwarebytesGeneric.Malware/Suspicious
PandaGeneric Malware
RisingTrojan.Generic@ML.90 (RDML:Gt3Dsrg95bwwNI5adVxubA)
YandexTrojan.Weelsof!3pZ+HjLyRhM
IkarusTrojan.Win32.Weelsof
FortinetW32/Weelsof!tr
AVGWin32:Weelsof-A [Trj]
Paloaltogeneric.ml

How to remove Symmi.1180?

Symmi.1180 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment