Malware

Win32/Syndicasec.F (file analysis)

Malware Removal

The Win32/Syndicasec.F is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Syndicasec.F virus can do?

  • A process attempted to delay the analysis task.
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Uses Windows utilities for basic functionality
  • Deletes its original binary from disk
  • Creates a hidden or system file
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

Related domains:

kumar807.blogspot.com
kumar807.wordpress.com
kumar807.livejournal.com

How to determine Win32/Syndicasec.F?


File Info:

crc32: AE5EB887
md5: 68bfa1b82dc0e2de10d0cf8551938dea
name: a3667153a6322fb8d4cf8869c094a05e995e2954fda833fe14304837ed4fd0bd
sha1: 0cf43f74f078fa4af30f589101a59c9860481b30
sha256: a3667153a6322fb8d4cf8869c094a05e995e2954fda833fe14304837ed4fd0bd
sha512: a3e375772eab6b7f8eeedceb54f4e1d041caf3dc1cde03d928e3101de37352082b37ea925fcffe7f46132fa146a5e6db042ac0b0093ac1d8cc00dca9218e22dc
ssdeep: 768:j5QGuIOFwKTMAj3cdXhwlJsYd+mq8ywmgiR+hYHAGQ:VsIOFwKT/BlJsYFq8ye5WQ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Syndicasec.F also known as:

MicroWorld-eScanGen:Variant.Symmi.59398
FireEyeGeneric.mg.68bfa1b82dc0e2de
CAT-QuickHealTrojan.MauvaiseRI.S5260832
ALYacGen:Variant.Symmi.59398
VIPRETrojan.Win32.Generic!BT
SangforMalware
CrowdStrikewin/malicious_confidence_90% (W)
BitDefenderGen:Variant.Symmi.59398
K7GWTrojan ( 004a0b431 )
K7AntiVirusTrojan ( 004a0b431 )
TrendMicroTROJ_SYNDICASEC.A
BitDefenderThetaGen:NN.ZexaF.34090.dqW@aiU05dgb
CyrenW32/WMIGhost.A.gen!Eldorado
SymantecTrojan.Syndicasec
TrendMicro-HouseCallTROJ_SYNDICASEC.A
Paloaltogeneric.ml
ClamAVWin.Trojan.Syndicasec-6609573-0
KasperskyTrojan.Win32.DLLhijack.ei
AlibabaTrojan:Win32/Syndicasec.ef8423c2
NANO-AntivirusTrojan.Win32.Dwn.deefhc
AegisLabTrojan.Win32.DLLhijack.4!c
APEXMalicious
TencentMalware.Win32.Gencirc.10b3dff9
Ad-AwareGen:Variant.Symmi.59398
SophosTroj/Thetatic-O
ComodoMalware@#13ua98cn1bsm2
F-SecureTrojan.TR/DLLhijack.jzvgf
DrWebTrojan.Wmighost.9
ZillyaTrojan.Agentb.Win32.5284
Invinceaheuristic
McAfee-GW-EditionGenericR-FMW!68BFA1B82DC0
EmsisoftGen:Variant.Symmi.59398 (B)
SentinelOneDFI – Suspicious PE
GDataGen:Variant.Symmi.59398
JiangminTrojan.Agentb.qf
MaxSecureTrojan.Malware.7401653.susgen
AviraHEUR/AGEN.1018775
MAXmalware (ai score=84)
MicrosoftTrojan:Win32/Syndicasec
Endgamemalicious (high confidence)
ArcabitTrojan.Symmi.DE806
SUPERAntiSpywareTrojan.Agent/Gen-Malagent
ZoneAlarmTrojan.Win32.DLLhijack.ei
AhnLab-V3Trojan/Win32.Agentb.R139589
Acronissuspicious
McAfeeGenericR-FMW!68BFA1B82DC0
VBA32Trojan.Agentb
ESET-NOD32Win32/Syndicasec.F
RisingBackdoor.Weemurl!8.31ED (CLOUD)
YandexTrojan.Agentb!+O/38dHvHR4
IkarusTrojan.Win32.Syndicasec
eGambitUnsafe.AI_Score_99%
FortinetW32/Agentb.BEVF!tr
WebrootW32.Gen.BT
F-ProtW32/WMIGhost.A.gen!Eldorado
Cybereasonmalicious.82dc0e
PandaTrj/CI.A
Qihoo-360HEUR/QVM41.1.Malware.Gen

How to remove Win32/Syndicasec.F?

Win32/Syndicasec.F removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment