Malware

About “Symmi.19220” infection

Malware Removal

The Symmi.19220 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Symmi.19220 virus can do?

  • Executable code extraction
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Symmi.19220?


File Info:

crc32: 7053627B
md5: a54aeda23316ea3e4fad6f5df9019d69
name: A54AEDA23316EA3E4FAD6F5DF9019D69.mlw
sha1: 0482305071ad9c62b3a50a152e80d0c740282bac
sha256: 7a72412d110df76c1398785ee7f3f86c2ede2145ecf9c0093990ade855d4d9a5
sha512: 2ccc914461b528d44afa1a4e37edd4ed0b010f3b411f2af40626541f7dd315b3f92bacee52be93f584cf0275501dcd8811297387891cb28750468615f59b5398
ssdeep: 12288:2/h5qN7rxuFWtXeU1rf2Tbk/4Apht8I4cChlLmQbe1sRzwo++FB0jCSMYSvuNRG:2TEdXmgL7qUCfyQb9+LWSteufGs20e
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x4ec5x7528x4e8ex5b66x4e60x4ea4x6d41
FileVersion: 1.0.0.0
CompanyName: ChenAi
Comments: x4e00x952ex4feex6539x5206x8fa8x7387
ProductName: x4e00x952ex4feex6539x5206x8fa8x7387
ProductVersion: 1.0.0.0
FileDescription: x4e00x952ex4feex6539x5206x8fa8x7387
Translation: 0x0804 0x04b0

Symmi.19220 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusAdware ( 004b942f1 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Symmi.19220
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaVirTool:Win32/FlyStudio.2cb3f635
K7GWAdware ( 004b942f1 )
Cybereasonmalicious.23316e
CyrenW32/SuspPack.BQ.gen!Eldorado
ESET-NOD32a variant of Win32/FlyStudio.Packed.AE potentially unwanted
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:VirTool.Win32.Generic
BitDefenderGen:Variant.Symmi.19220
MicroWorld-eScanGen:Variant.Symmi.19220
TencentWin32.Trojan.Generic.Lkxe
Ad-AwareGen:Variant.Symmi.19220
ComodoTrojWare.Win32.Agent.OSCF@5rs7jr
BitDefenderThetaGen:NN.ZexaF.34758.5y0@aauhw@ab
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0CFI21
McAfee-GW-EditionBehavesLike.Win32.AdwareFileTour.dc
FireEyeGeneric.mg.a54aeda23316ea3e
EmsisoftGen:Variant.Symmi.19220 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Black.Gen2
eGambitUnsafe.AI_Score_99%
MicrosoftVirTool:Win32/Obfuscator.XZ
GridinsoftTrojan.Heur!.03212021
ArcabitTrojan.Symmi.D4B14
AegisLabTrojan.Win32.Generic.4!c
GDataGen:Variant.Symmi.19220
AhnLab-V3Packed/Win32.Vmpbad.C156613
Acronissuspicious
McAfeeGeneric-FAAF!A54AEDA23316
MAXmalware (ai score=86)
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0CFI21
RisingTrojan.Generic@ML.100 (RDMK:+5pOVhUHaP6J63+QBq9LCw)
IkarusTrojan-Downloader.Win32.FakeIE
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/FlyStudio_Packed
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Symmi.19220?

Symmi.19220 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment