Malware

Symmi.63658 removal

Malware Removal

The Symmi.63658 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Symmi.63658 virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Symmi.63658?


File Info:

crc32: E64E252B
md5: 7b6667746e6da0c9dbf14e84e699e4d1
name: 7B6667746E6DA0C9DBF14E84E699E4D1.mlw
sha1: f91e45871254a97bb82f0623bd0dfac54be70942
sha256: 1de9fd85001b1439cf0459d024a3ad3aa258a14fb85b9a0cef52713699cd41eb
sha512: 4441e12e7e1d031bb1e75d7d88894a8c3924c36612d6af4c3f92cd3d691e1d3ca546facacc01c5d6a4e48c74d773b50ea76d51ea0ed06945cf1786d5776839e7
ssdeep: 6144:0rmD773B2OEBbTdVGG5Eky3Um+qQV6itPY7:dn73B2OwdVByE9Bls
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyleft 1998-2006 by Don HO
InternalName: npp.exe
FileVersion: 5.7
CompanyName: Don HO don.h@free.fr
ProductName: Notepad++
ProductVersion: 5.7
FileDescription: Notepad++ : a free (GNU) source code editor
OriginalFilename: Notepad++.exe
Translation: 0x0409 0x04b0

Symmi.63658 also known as:

K7AntiVirusTrojan ( 004f11e51 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Symmi.63658
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.925126
SangforTrojan.Win32.Kryptik.8
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:Win32/Kryptik.863af872
K7GWTrojan ( 0034c9011 )
Cybereasonmalicious.46e6da
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.ZDG
APEXMalicious
AvastWin32:Malware-gen
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Symmi.63658
NANO-AntivirusTrojan.Win32.MlwGen.ecosvw
MicroWorld-eScanGen:Variant.Symmi.63658
TencentWin32.Trojan.Zbot.Ajby
Ad-AwareGen:Variant.Symmi.63658
SophosML/PE-A + Mal/EncPk-ABFO
ComodoMalware@#xw5i3i6n3sv7
BitDefenderThetaGen:NN.ZexaF.34266.oG1@aGZJhEhi
VIPRELookslike.Win32.Sirefef.zh (v)
TrendMicroTSPY_ZBOT.SMES
McAfee-GW-EditionBehavesLike.Win32.Emotet.dh
FireEyeGeneric.mg.7b6667746e6da0c9
EmsisoftGen:Variant.Symmi.63658 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1121164
eGambitGeneric.Malware
Antiy-AVLTrojan/Generic.ASMalwS.18B6C20
MicrosoftPWS:Win32/Zbot!rfn
ArcabitTrojan.Symmi.DF8AA
GDataGen:Variant.Symmi.63658
Acronissuspicious
McAfeeArtemis!7B6667746E6D
MAXmalware (ai score=99)
VBA32Malware-Cryptor.General.3
PandaBck/Qbot.AO
TrendMicro-HouseCallTSPY_ZBOT.SMES
RisingTrojan.Generic@ML.98 (RDMK:jHuqD7rCu0qEYvT+EzZF/A)
YandexTrojan.Kryptik!sDXqxW6E+c4
IkarusTrojan-Spy.Win32.Zbot
FortinetW32/Kryptik.ZFQ!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Symmi.63658?

Symmi.63658 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment