Malware

Symmi.71941 information

Malware Removal

The Symmi.71941 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Symmi.71941 virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Executed a process and injected code into it, probably while unpacking
  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file
  • Creates a copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Symmi.71941?


File Info:

crc32: 5A425D30
md5: 071535762150454cb190fd27e78272a8
name: 071535762150454CB190FD27E78272A8.mlw
sha1: f94276cecd687c2991add012402eb39818afba56
sha256: dd8a697bde5be1501a65181d3627bfef1fd2b4c5eca1126ee69b35dd53e82cb5
sha512: e5fabd8792ed2066a4cfc6417be818103f93e2b44236609ac266fbcc2b3e689bc41e286f37a2507a57b25e8c8bc42f270df39a51185a4a557af45f87c721c337
ssdeep: 3072:m12tT3w5tPNbySzzlEKSZFbfuADys99PiWUkNqBjyu6:q2NGPsS/e7n7D5ribkgBjy
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Symmi.71941 also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanGen:Variant.Symmi.71941
FireEyeGeneric.mg.071535762150454c
CAT-QuickHealRansom.Crysis.A5
ALYacGen:Variant.Symmi.71941
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Crusis.j!c
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 00503bea1 )
BitDefenderGen:Variant.Symmi.71941
K7GWTrojan ( 00503bea1 )
Cybereasonmalicious.621504
SymantecRansom.Cerber!g17
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojan:Win32/Cerber.cf845fc4
NANO-AntivirusTrojan.Win32.Kryptik.elbhvi
TencentMalware.Win32.Gencirc.10bb714e
Ad-AwareGen:Variant.Symmi.71941
EmsisoftGen:Variant.Symmi.71941 (B)
ComodoMalware@#xkrsi1v08i5f
F-SecureHeuristic.HEUR/AGEN.1127095
DrWebTrojan.Encoder.5994
ZillyaTrojan.Crusis.Win32.149
TrendMicroRansom_HPLOCKY.SM4
McAfee-GW-EditionRansomware-FMEE!071535762150
SophosMal/Generic-R + Mal/Cerber-V
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Crusis.hc
WebrootW32.Ransomware.Gen
AviraHEUR/AGEN.1127095
MAXmalware (ai score=87)
Antiy-AVLTrojan/Win32.SGeneric
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:Win32/Wadhrama
ArcabitTrojan.Symmi.D11905
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Symmi.71941
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Cerber.R194429
McAfeeRansomware-FMEE!071535762150
VBA32Trojan.Encoder
MalwarebytesMalware.Heuristic.1003
PandaTrj/Genetic.gen
ESET-NOD32a variant of Generik.HCISGCW
TrendMicro-HouseCallRansom_HPLOCKY.SM4
RisingRansom.Cerber!8.3058 (CLOUD)
YandexTrojan.GenAsa!SuZAy+Wc608
IkarusTrojan.Win32.Filecoder
eGambitUnsafe.AI_Score_69%
FortinetW32/Injector.DILW!tr
BitDefenderThetaGen:NN.ZexaF.34590.kmJfa0@Q7ajm
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_90% (D)
Qihoo-360HEUR/QVM11.1.5361.Malware.Gen

How to remove Symmi.71941?

Symmi.71941 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment