Malware

Symmi.8370 malicious file

Malware Removal

The Symmi.8370 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Symmi.8370 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Presents an Authenticode digital signature
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Symmi.8370?


File Info:

name: 997E419A9740268EAA18.mlw
path: /opt/CAPEv2/storage/binaries/a907f38ca9d7b48af23a1c5e95174c3730abdc71890e5d43758dbff415fca9c9
crc32: ED82FBD2
md5: 997e419a9740268eaa1825d03cd0a70b
sha1: 0be63601edfe6d340df62daa414e80b432a5e23a
sha256: a907f38ca9d7b48af23a1c5e95174c3730abdc71890e5d43758dbff415fca9c9
sha512: ce0e85409ee2c5ba404646da1cdd8bc5bd98e8f09f843c8dbd4f69d3f83cdf6e86af61f9cd3f96be71bd72407c059c3bfd2d5df93943464c84953e0db771b6ba
ssdeep: 6144:WpSl4xx6RxDl+JES+cvJOBh+nlzgzI/XPCd:W4+xgRT+x+cv8B8nJgzI/XPCd
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16854CFAFC6F70953D8DEF9B700A9997C11A3D6AA0A7825C25FE0C64E71AC6DF0513708
sha3_384: b64e7e8cdb58b172ed9c1f81f621017a5d6a770a35588313c1c0a104adbf2077ca0bd2ec60dad01b3e32d7b3439de667
ep_bytes: 558bec81ecc0000000535657c7458050
timestamp: 2012-06-19 13:08:59

Version Info:

0: [No Data]

Symmi.8370 also known as:

BkavW32.AIDetect.malware2
LionicHeuristic.File.Generic.00×1!p
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Symmi.8370
FireEyeGeneric.mg.997e419a9740268e
McAfeePWS-Zbot.gen.bex
CylanceUnsafe
ZillyaTrojan.Zbot.Win32.62673
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0040f1aa1 )
AlibabaTrojanPSW:Win32/PackBackdoor.e42d0309
K7GWTrojan ( 0040f1aa1 )
Cybereasonmalicious.a97402
BaiduWin32.Trojan.Kryptik.gg
VirITTrojan.Win32.Crypt_s.CW
CyrenW32/Zbot.FL.gen!Eldorado
tehtrisGeneric.Malware
ESET-NOD32Win32/Spy.Zbot.AAO
APEXMalicious
CynetMalicious (score: 100)
KasperskyPacked.Win32.Krap.iu
BitDefenderGen:Variant.Symmi.8370
NANO-AntivirusTrojan.Win32.Krap.bqocck
AvastWin32:Karagany
TencentWin32.Trojan.FalseSign.Lflw
Ad-AwareGen:Variant.Symmi.8370
EmsisoftGen:Variant.Symmi.8370 (B)
ComodoTrojWare.Win32.TrojanDownloader.Dofoil.AYY@5cjcwk
DrWebTrojan.PWS.Panda.2005
VIPREGen:Variant.Symmi.8370
TrendMicroMal_Ransom-1
McAfee-GW-EditionPWS-Zbot.gen.bex
Trapminemalicious.high.ml.score
SophosML/PE-A + Mal/EncPk-AFX
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Symmi.8370
JiangminTrojanSpy.Zbot.btfq
WebrootW32.Trojan.Gen
AviraTR/Crypt.EPACK.Gen2
Antiy-AVLTrojan/Generic.ASMalwS.4
ArcabitTrojan.Symmi.D20B2
ZoneAlarmPacked.Win32.Krap.iu
MicrosoftPWS:Win32/Zbot!CI
GoogleDetected
AhnLab-V3Trojan/Win32.Zbot.R28946
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34698.smX@aKsY2Hi
ALYacGen:Variant.Symmi.8370
MAXmalware (ai score=99)
VBA32TrojanSpy.Zbot
TrendMicro-HouseCallMal_Ransom-1
RisingMalware.Undefined!8.C (TFE:3:s2kONYnfZhO)
YandexTrojanSpy.Zbot!8Ja2ndCmBVE
IkarusTrojan.Win32.Sirefef
MaxSecureTrojan.Packed.Krap.iu
FortinetW32/Kryptik.WDV!tr
AVGWin32:Karagany
PandaBck/Qbot.AO
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Symmi.8370?

Symmi.8370 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment