Malware

Symmi.42056 (file analysis)

Malware Removal

The Symmi.42056 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Symmi.42056 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)

How to determine Symmi.42056?


File Info:

crc32: 9617A744
md5: e6cde189fca0c6012a2c9bab0981481e
name: E6CDE189FCA0C6012A2C9BAB0981481E.mlw
sha1: d76df830219be98a34e8b242880f5c1ac155b971
sha256: 6ca75f93541e23eb5d00fe9b2825c843376be5dee2e92e84b7c80ac667fcb40a
sha512: c04c58919a7d31c530e09275dbc0e507cf90f477f16dc795f851c914d03be3754f35fd1f8cfd91f9e449766751ae36ef06c0fdb7f0db65bf57699aa6a12ec022
ssdeep: 12288:eG+uFSv+rNiVneMY6viJIiTTjbSMxXFca:e8SvkNMnPYiiLT/bSMNFca
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x5341x9999 x7248x6743x6240x6709
FileVersion: 1.0.0.0
CompanyName: x5341x9999
Comments: x672cx7a0bx5e8fx4f7fx7528x6613x8bedx8a00x7f16x5199(http://www.eyuyan.com)
ProductName: x6613x8bedx8a00x7a0bx5e8f
ProductVersion: 1.0.0.0
FileDescription: x5341x9999
Translation: 0x0804 0x04b0

Symmi.42056 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005246d51 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Symmi.42056
CylanceUnsafe
ZillyaTrojan.Mbro.Win32.4824
SangforWin.Malware.Zusy-6840460-0
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaRansom:Win32/MBRlock.d0b1483d
K7GWTrojan ( 005246d51 )
Cybereasonmalicious.9fca0c
CyrenW32/Agent.EW.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/MBRlock.BA
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Mbro.bbtl
BitDefenderGen:Variant.Symmi.42056
NANO-AntivirusTrojan.Win32.MBRlock.fhitny
MicroWorld-eScanGen:Variant.Symmi.42056
TencentWin32.Trojan.Mbro.Amcj
Ad-AwareGen:Variant.Symmi.42056
SophosGeneric ML PUA (PUA)
ComodoWorm.Win32.Dropper.RA@1qraug
BitDefenderThetaGen:NN.ZexaF.34684.2q0@a8zM1Gbb
TrendMicroRansom.Win32.MBRLOCKER.SM
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
FireEyeGeneric.mg.e6cde189fca0c601
EmsisoftGen:Variant.Symmi.42056 (B)
AviraHEUR/AGEN.1128176
eGambitUnsafe.AI_Score_100%
MicrosoftRansom:Win32/Molock.A!bit
GDataWin32.Trojan.PSE.1FOH0JX
AhnLab-V3Trojan/Win32.BHO.C23372
Acronissuspicious
McAfeeArtemis!E6CDE189FCA0
MAXmalware (ai score=99)
VBA32BScope.Backdoor.Poison
MalwarebytesTrojan.MalPack.FlyStudio
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom.Win32.MBRLOCKER.SM
RisingTrojan.Kazy!1.6838 (CLOUD)
YandexTrojan.Mbro!A2LcFPB3RR0
SentinelOneStatic AI – Malicious PE
MaxSecureDropper.Dinwod.frindll
FortinetW32/MBRlock.AQ!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Symmi.42056?

Symmi.42056 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment