Malware

Symmi.7744 removal instruction

Malware Removal

The Symmi.7744 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Symmi.7744 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Symmi.7744?


File Info:

crc32: AFFDC63D
md5: c20adcb2fd2928fa9cfe4cb8bd672b0c
name: C20ADCB2FD2928FA9CFE4CB8BD672B0C.mlw
sha1: 4071d732056294c575aabad32c5de1bd3c76075f
sha256: 567991cd2443051368336a62c709dd132519cf0781d8d6ac9d9b367fd2245933
sha512: d0e9f1b3d4f19a1f6e246b11fa75d0d9a14f8bb1a3cca624a0bb3d673ea39386a0252ba1e8e63818ead04e0099de401989f21d84f2daf41f34ef4d0ca4303666
ssdeep: 49152:shqao24umJZIgvO62uuG9tBafhl/8kgFPdvJAe/nOH:q9uJm62iYhdWzv+kOH
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x6613x6587x4ef6x4e92x8f6c x6b22x8fcex52a0x5165x5b98x65b9x4ea4x6d41x7fa4 x7fa4x53f7:217869024 x6709BUGx8bf7x53cax65f6x53cdx9988x4ee5x786ex4fddx8f6fx4ef6x53efx7528x6027
FileVersion: 5.71.0.0
CompanyName: QQ204238095(x5fc3x7396x68a6)
Comments: x6613x6587x4ef6x4e92x8f6c x6b22x8fcex52a0x5165x5b98x65b9x4ea4x6d41x7fa4 x7fa4x53f7:217869024 x6709BUGx8bf7x53cax65f6x53cdx9988x4ee5x786ex4fddx8f6fx4ef6x53efx7528x6027
ProductName: x6613x6587x4ef6x4e92x8f6c
ProductVersion: 5.71.0.0
FileDescription: x6613x6587x4ef6x4e92x8f6c x6b22x8fcex52a0x5165x5b98x65b9x4ea4x6d41x7fa4 x7fa4x53f7:217869024 x6709BUGx8bf7x53cax65f6x53cdx9988x4ee5x786ex4fddx8f6fx4ef6x53efx7528x6027
Translation: 0x0804 0x04b0

Symmi.7744 also known as:

BkavW32.FlyStudioTn.Heur
K7AntiVirusAdware ( 004b897e1 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Symmi.7744
CylanceUnsafe
CrowdStrikewin/malicious_confidence_70% (D)
Cybereasonmalicious.2fd292
CyrenW32/QQPass.AD.gen!Eldorado
ESET-NOD32a variant of Win32/Packed.FlyStudio potentially unwanted
ZonerTrojan.Win32.92118
APEXMalicious
AvastFileRepMetagen [Malware]
ClamAVWin.Malware.Vjadtre-6840658-0
BitDefenderGen:Variant.Symmi.7744
MicroWorld-eScanGen:Variant.Symmi.7744
Ad-AwareGen:Variant.Symmi.7744
SophosGeneric ML PUA (PUA)
ComodoTrojWare.Win32.TrojanSpy.FlyStudio.~B@1eqete
VIPREBackdoor.Win32.FlyAgent.h (v)
McAfee-GW-EditionBehavesLike.Win32.Autorun.tc
FireEyeGeneric.mg.c20adcb2fd2928fa
EmsisoftGen:Variant.Symmi.7744 (B)
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASCommon.FB
MicrosoftTrojan:Win32/Wacatac.B!ml
GridinsoftMalware.Win32.Gen.bot!se24374
ArcabitTrojan.Symmi.D1E40
GDataWin32.Trojan.FlyStudio.A
Acronissuspicious
MAXmalware (ai score=86)
VBA32Trojan.Bitrep
MalwarebytesTrojan.FlyStudio
TrendMicro-HouseCallTROJ_GEN.R005H0CFI21
RisingMalware.Heuristic!ET#100% (RDMK:cmRtazrfkNDUr9LHQuz4HhnKHmc2)
IkarusTrojan.Bluteal
MaxSecureTrojan.Autorun.DM
FortinetW32/Generic.AP.14793D8!tr
AVGFileRepMetagen [Malware]

How to remove Symmi.7744?

Symmi.7744 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment