Adware

What is “Adware.Strictor.46898”?

Malware Removal

The Adware.Strictor.46898 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.Strictor.46898 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • HTTPS urls from behavior.
  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Russian
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Adware.Strictor.46898?


File Info:

name: 3ED874805B14FA71E62C.mlw
path: /opt/CAPEv2/storage/binaries/57518f3ac869dfdd79eb13d4c1e41bd7ce7bfbf6dc9d4db062957b39f6d73552
crc32: 2C288A98
md5: 3ed874805b14fa71e62cdda5aa431c13
sha1: c5c95ca9b25b757db269b1b4746e1ecf1b1cd678
sha256: 57518f3ac869dfdd79eb13d4c1e41bd7ce7bfbf6dc9d4db062957b39f6d73552
sha512: 2e305c546c8bb7645a330140ff01978aa2918f6c0f55a1d5d5035e8f63e45cfef4405ca0bfefd3fcae251fdb6ab86b55d029e53b9edb701f1bb503eca68b1708
ssdeep: 3072:2r47w2Mh7k5BN9ot+23z6Ttu2bQWgUuVgY6pD:k47w2Mh7k8t+luogMpD
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B6F3E1262030FEA8D10B35FC67279795ABBDDD644B1BB84EA9DD3A1410870F11BD9E83
sha3_384: 67ea767dd66e16189af2ecfaa16e570a99606846990be82fc2f45aa44e8b2d9d1a9c70cbbf395eab0df5c9c37e4b23d1
ep_bytes: 68708b4100c38bc0558bec83c4d4c645
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Adware.Strictor.46898 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.mnE5
DrWebTrojan.LoadMoney.15
MicroWorld-eScanGen:Variant.Adware.Strictor.46898
CAT-QuickHealTrojan.Sisproc.A6
SkyhighBehavesLike.Win32.HLLP.cm
McAfeeDownloader-FWY!3ED874805B14
MalwarebytesLoadMoney.Adware.Bundler.DDS
ZillyaDownloader.LMN.Win32.356013
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005042e41 )
K7GWTrojan ( 005042e41 )
ArcabitTrojan.Adware.Strictor.DB732
BitDefenderThetaAI:Packer.CC05A07D21
VirITTrojan.Win32.Crypt2.BZEO
SymantecTrojan.Gen
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Adware.LoadMoney.AAI
CynetMalicious (score: 99)
APEXMalicious
ClamAVWin.Trojan.Agent-1345983
Kasperskynot-a-virus:AdWare.Win32.LoadMoney.aai
BitDefenderGen:Variant.Adware.Strictor.46898
NANO-AntivirusTrojan.Win32.Dwn.dpxeqe
AvastWin32:LoadMoney-BI [Trj]
TencentMalware.Win32.Gencirc.10b1d5ed
EmsisoftGen:Variant.Adware.Strictor.46898 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen
BaiduWin32.Adware.Generic.s
VIPREGen:Variant.Adware.Strictor.46898
SophosTroj/LdMon-D
SentinelOneStatic AI – Malicious PE
JiangminHeur.IPZ.b
WebrootW32.Rogue.Gen
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan[Downloader]/Win32.LMN.xd
Kingsoftmalware.kb.a.998
XcitiumTrojWare.Win32.Kryptik.BAJ@57fz7n
MicrosoftSoftwareBundler:Win32/Ogimant
ViRobotTrojan.Win32.Generic.173056.C
ZoneAlarmnot-a-virus:AdWare.Win32.LoadMoney.aai
GDataGen:Variant.Adware.Strictor.46898
VaristW32/LoadMoney.R.gen!Eldorado
AhnLab-V3Trojan/Win32.LoadMoney.R89807
ALYacGen:Variant.Adware.Strictor.46898
PandaTrj/Genetic.gen
RisingAdware.LoadMoney!1.AE7B (CLASSIC)
YandexPUA.Downloader!mFs9DYvEDxA
IkarusVirus.Win32.Cryptor
MaxSecurenot-a-virus:Downloader.LMN.gkbs
FortinetRiskware/LMN
AVGWin32:LoadMoney-BI [Trj]
DeepInstinctMALICIOUS

How to remove Adware.Strictor.46898?

Adware.Strictor.46898 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment