Malware

Symmi.49094 malicious file

Malware Removal

The Symmi.49094 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Symmi.49094 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Symmi.49094?


File Info:

crc32: 71608DA5
md5: 605de59abc0b81084855daa4faaacc7f
name: 605DE59ABC0B81084855DAA4FAAACC7F.mlw
sha1: ad10f4ab1559b2a665ebc94705509a41d51bc058
sha256: a409b3292e34741e8bfd793afe736549ccac2ecf11b0c6e719d3100addb6991b
sha512: 0fd6268e0eff8595988d97e8de92d22cc8cf71b29cd69c3dfb7884be7c063c16db664b05db13894c4372a66558388830d699937adabe4b793df9e58c90a94a23
ssdeep: 6144:mDKW1Lgbdl0TBBvjc/MMmuc6KrKjKvxCVQ/zkY4ztoBqS:Ah1Lk70TnvjcxVWKjIfbyztlS
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2021
Assembly Version: 1.1.1.1
InternalName: KaptanStub.exe
FileVersion: 1.1.1.1
ProductName: Microsoft
ProductVersion: 1.1.1.1
FileDescription: Microsoft
OriginalFilename: KaptanStub.exe

Symmi.49094 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
ALYacGen:Variant.Symmi.49094
CylanceUnsafe
CrowdStrikewin/malicious_confidence_70% (D)
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastFileRepMetagen [Malware]
CynetMalicious (score: 100)
BitDefenderGen:Variant.Symmi.49094
MicroWorld-eScanGen:Variant.Symmi.49094
Ad-AwareGen:Variant.Symmi.49094
SophosGeneric ML PUA (PUA)
BitDefenderThetaGen:NN.ZexaF.34170.sq0@aub5Ws
McAfee-GW-EditionBehavesLike.Win32.Generic.fc
FireEyeGeneric.mg.605de59abc0b8108
EmsisoftGen:Variant.Symmi.49094 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.MSIL.Gen
eGambitUnsafe.AI_Score_99%
MicrosoftBackdoor:Win32/Bladabindi!ml
GDataGen:Variant.Symmi.49094
Acronissuspicious
McAfeeArtemis!605DE59ABC0B
MAXmalware (ai score=83)
MalwarebytesMachineLearning/Anomalous.95%
TrendMicro-HouseCallTROJ_GEN.R005H09IN21
RisingTrojan.Generic@ML.100 (RDML://DBKUCz/KtQGyzwZxSF9g)
IkarusTrojan.MSIL.Spy
FortinetW32/PossibleThreat
AVGFileRepMetagen [Malware]

How to remove Symmi.49094?

Symmi.49094 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment