Malware

Symmi.56989 removal guide

Malware Removal

The Symmi.56989 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Symmi.56989 virus can do?

  • Executable code extraction
  • Unconventionial language used in binary resources: Lithuanian (Classic)
  • Anomalous binary characteristics

How to determine Symmi.56989?


File Info:

crc32: 1C4422B8
md5: 5175ef2aeae62a8ccc8996298c48a94c
name: 5175EF2AEAE62A8CCC8996298C48A94C.mlw
sha1: b2f269c513be682d434d929941e7fc07528a1bdc
sha256: 0d051679187372582465d058a90026222d6cd92beff97cf14e89dbef174f81a6
sha512: 0a3cedd26c50086f8f8cc50f4adab000cd1def7134c398e7b5467d2d6b03cc68916ce04ae97d58e5be7bea10fec26a437d282e1b09374991d78437625729d4ce
ssdeep: 6144:SIyxN7xBNF+Kc/Y8AchP/IyxN7xBNF+Kc/Y8AchP96lF1PS:mL7HN4ttlL7HN4tt96JK
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: fufur@gmx.de
InternalName: speed
FileVersion: 2.00
ProductName: Rc4Speed
ProductVersion: 2.00
FileDescription: FileEnDecryptor (uses RC4 for endecryption)
OriginalFilename: speed.exe

Symmi.56989 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
ALYacGen:Variant.Symmi.56989
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
BitDefenderGen:Variant.Symmi.56989
Cybereasonmalicious.aeae62
CyrenW32/Kryptik.CWF.gen!Eldorado
ESET-NOD32a variant of Win32/Injector.EMVX
APEXMalicious
KasperskyHEUR:Trojan.Win32.Generic
MicroWorld-eScanGen:Variant.Symmi.56989
Ad-AwareGen:Variant.Symmi.56989
SophosML/PE-A
BitDefenderThetaGen:NN.ZevbaF.34628.6m3@a8GwxeeO
FireEyeGeneric.mg.5175ef2aeae62a8c
EmsisoftGen:Variant.Symmi.56989 (B)
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_78%
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Symmi.DDE9D
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Symmi.56989
MAXmalware (ai score=88)
VBA32Malware-Cryptor.VB.gen.1
Qihoo-360HEUR/QVM41.1.F887.Malware.Gen

How to remove Symmi.56989?

Symmi.56989 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment