Malware

Symmi.66469 removal instruction

Malware Removal

The Symmi.66469 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Symmi.66469 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Creates RWX memory
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Deletes its original binary from disk
  • Creates a copy of itself
  • Collects information to fingerprint the system

How to determine Symmi.66469?


File Info:

name: AEB12080BC4920D9C327.mlw
path: /opt/CAPEv2/storage/binaries/0f5c6680555c3517a64835c3947950543476f51a1b0f6569e90ad4ae2e32860d
crc32: D0A09E8B
md5: aeb12080bc4920d9c3270a4b5f617706
sha1: 7aa2a53ef2398a247fd1f0806bdbc9ffefb4b2fa
sha256: 0f5c6680555c3517a64835c3947950543476f51a1b0f6569e90ad4ae2e32860d
sha512: 45851263fe38baefea18e9e6b47c72e9d31447b9437935ddf3dd7ae94e31e16e6972bb46e61cf91253b563a3ff508652ae44cc345b795ca35e0e06076bec8ae5
ssdeep: 6144:Vbn9QniElbLeV2JpodHvV0J7urACdrfdIa5yn:PQnimbW2I2u9Rfbyn
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B9245B11B270EA95F0C094B527B58BA650F53876760AFC433B824FAB7924DDCCA25F87
sha3_384: b4e3279701ba1bf8dc6cf3cec57225e8a8330e5bf84bf8ae560659f3f129f2368264bda2a9d6b336c10ac8f800b619aa
ep_bytes: e8b1350000e916feffff558bec83ec04
timestamp: 2016-05-21 15:11:02

Version Info:

CompanyName: general
Description: analgini
leVersion: 2.3.98
alName: dimedroli
yright: omnopon
lename: dimedroli
98: 2.3.98
9.325: num
Translation: 0x0409 0x04e4

Symmi.66469 also known as:

BkavW32.FamVT.RazyNHmA.Trojan
LionicTrojan.Win32.Neurevt.tn73
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Symmi.66469
FireEyeGeneric.mg.aeb12080bc4920d9
ALYacGen:Variant.Symmi.66469
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 004f02971 )
AlibabaTrojanPSW:Win32/Snojan.6a7a041c
K7GWTrojan ( 004f02971 )
Cybereasonmalicious.0bc492
BitDefenderThetaGen:NN.ZexaF.34084.nu0@a0Oyt2gG
CyrenW32/S-e2e07e9d!Eldorado
SymantecPacked.Generic.521
ESET-NOD32a variant of Win32/Injector.CYWP
BaiduWin32.Trojan.Kryptik.aio
Paloaltogeneric.ml
KasperskyTrojan.Win32.Snojan.bzyx
BitDefenderGen:Variant.Symmi.66469
NANO-AntivirusTrojan.Win32.Panda.evdbiu
SUPERAntiSpywareTrojan.Agent/Gen-Injector
AvastWin32:Dorder-AO [Trj]
TencentWin32.Trojan.Snojan.Lqyj
Ad-AwareGen:Variant.Symmi.66469
SophosMal/Generic-S
ComodoMalware@#1ljzq6fzgnz8h
DrWebTrojan.PWS.Panda.12580
ZillyaTrojan.Snojan.Win32.1471
McAfee-GW-EditionGamarue-FGG!AEB12080BC49
EmsisoftGen:Variant.Symmi.66469 (B)
APEXMalicious
GDataGen:Variant.Symmi.66469
JiangminTrojan.Generic.zpyd
AviraHEUR/AGEN.1206959
MAXmalware (ai score=100)
Antiy-AVLTrojan/Generic.ASMalwS.22B7B79
MicrosoftPWS:Win32/Zbot
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Upbot.R181797
McAfeeGamarue-FGG!AEB12080BC49
VBA32Malware-Cryptor.Limpopo
MalwarebytesSpyware.Pony
IkarusTrojan.Crypt
RisingTrojan.Kryptik!1.AE9E (CLASSIC)
YandexTrojan.GenAsa!1InGZw3HnmQ
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.FACF!tr
AVGWin32:Dorder-AO [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Symmi.66469?

Symmi.66469 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment