Malware

Symmi.79220 (file analysis)

Malware Removal

The Symmi.79220 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Symmi.79220 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.

How to determine Symmi.79220?


File Info:

crc32: CCFA301D
md5: ad0c63393eed49fc5fff38ccfec591b6
name: AD0C63393EED49FC5FFF38CCFEC591B6.mlw
sha1: 8b55313b8e62d40d8564abbdb9743d3ea89ebce6
sha256: 27ff908d2ba78341d069891ee70ce7f253bf301ed6cb835d606b6753b6f90ad9
sha512: 503e20e79369ab43d7bd75ed14f081da769cb5ac77e7723383d412b0dbef68e3bf26e75446a0bbf5af6c92db589c6ba03f44e1c696d90e3076862dee2b7f4ace
ssdeep: 3072:cRHEC2Oi8NXC797F8TBfFvj4bq5722hRQNPbqS1+YD1Ds:cyC2F8NXC796TB9vj482sRQNTD1vR
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: d.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: d.exe

Symmi.79220 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Symmi.79220
FireEyeGeneric.mg.ad0c63393eed49fc
McAfeeArtemis!AD0C63393EED
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan-Downloader ( 004bb40d1 )
BitDefenderGen:Variant.Symmi.79220
K7GWTrojan-Downloader ( 004bb40d1 )
Cybereasonmalicious.93eed4
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Malware.LuminosityLink-5710531-1
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojan:MSIL/Xpack.4d4a6547
NANO-AntivirusTrojan.Win32.Blocker.cmsunw
AegisLabTrojan.Win32.Blocker.j!c
Ad-AwareGen:Variant.Symmi.79220
SophosMal/Generic-S
ComodoMalware@#22ctojzth1y2f
F-SecureHeuristic.HEUR/AGEN.1128470
ZillyaTrojan.Blocker.Win32.13223
TrendMicroTROJ_GEN.R002C0OB421
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
EmsisoftGen:Variant.Symmi.79220 (B)
WebrootW32.Backdoor.Gen
AviraHEUR/AGEN.1128470
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Occamy.C27
GridinsoftTrojan.Win32.Downloader.sa
ArcabitTrojan.Symmi.D13574
SUPERAntiSpywareTrojan.Agent/Gen-Autorun
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Symmi.79220
CynetMalicious (score: 100)
AhnLab-V3Downloader/Win32.Agent.C115940
BitDefenderThetaGen:NN.ZexaF.34608.oq0@aaLvzC
MAXmalware (ai score=100)
VBA32Trojan.Bitrep
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/CI.A
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.MP
TrendMicro-HouseCallTROJ_GEN.R002C0OB421
TencentMsil.Trojan-downloader.Agent.Lmkq
YandexTrojan.Blocker!MVRXP7y0DfY
IkarusTrojan-Crypt.Xpack
FortinetW32/Blocker.CTKC!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (D)
Qihoo-360HEUR/Malware.QVM10.Gen

How to remove Symmi.79220?

Symmi.79220 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment