Malware

Application.Strictor.175277 removal guide

Malware Removal

The Application.Strictor.175277 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Strictor.175277 virus can do?

  • Presents an Authenticode digital signature
  • Detected script timer window indicative of sleep style evasion
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • Attempts to modify proxy settings

Related domains:

z.whorecord.xyz
a.tomx.xyz
installpack.net

How to determine Application.Strictor.175277?


File Info:

crc32: F9CA64AE
md5: f07efa5b4b8a3524164cd30fe9cb5b2e
name: InstallPack_ca131.exe
sha1: b5b07680f48a9cf77d77ab736843394b12e599a7
sha256: 9eea2b1b81605e01b97ce170f8ba54edcd75f922efa43e7a2cd64d028cdc6c93
sha512: 9d776c046bdcf4490c7922ea3f276786edd18cddfd767540f074cc817a310d1ac023ee4605e457d095674ec2c2aa9d036a0062dac9e6d4c56bbcf545a54c8c42
ssdeep: 49152:fdW6CS8CmAZhdqSnJa2bFVlzbnpLrfQMHNr1CLdW8HLVMegO696:fdyS8OhPa8VlDttBCLd1r6egt
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2005-2016 Oleg N. Scherbakov
InternalName: 7ZSfxMod
FileVersion: 1.7.0.3900
CompanyName: Oleg N. Scherbakov
PrivateBuild: April 1, 2016
ProductName: 7-Zip SFX
ProductVersion: 1.7.0.3900
FileDescription: 7z Setup SFX (x86)
OriginalFilename: 7ZSfxMod_x86.exe
Translation: 0x0000 0x04b0

Application.Strictor.175277 also known as:

MicroWorld-eScanGen:Variant.Application.Strictor.175277
FireEyeGen:Variant.Application.Strictor.175277
CAT-QuickHealPUA.Insitegrou.Gen
McAfeeArtemis!F07EFA5B4B8A
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabRiskware.Win32.InstallPack.1!c
K7AntiVirusAdware ( 005524301 )
K7GWAdware ( 005524301 )
Cybereasonmalicious.b4b8a3
Invinceaheuristic
F-ProtJS/Agent.SU!Eldorado
APEXMalicious
GDataWin32.Adware.Softobase.B
Kasperskynot-a-virus:HEUR:Downloader.Win32.InstallPack.gen
BitDefenderGen:Variant.Application.Strictor.175277
NANO-AntivirusTrojan.Win32.InstallPack.fofhrd
ViRobotAdware.Installpack.2045352
Endgamemalicious (high confidence)
SophosInstallCore (PUA)
ComodoMalware@#2sibpwxcgvgkx
DrWebAdware.Softobase.15
TrendMicroPUA.Win32.InstallPack.B.component
McAfee-GW-EditionArtemis!PUP
MaxSecureWin.MxResIcn.Heur.Gen
EmsisoftApplication.SoftInstall (A)
IkarusPUA.Bundler
CyrenJS/Agent.SU!Eldorado
JiangminHackTool.Agent.dhf
WebrootPua.Opencandy
Antiy-AVLTrojan/Win32.TSGeneric
MicrosoftPUA:Win32/LoadMoney
ArcabitTrojan.Application.Strictor.D2ACAD
ZoneAlarmnot-a-virus:HEUR:Downloader.Win32.InstallPack.gen
AhnLab-V3PUP/Win32.Softobase.C2756334
VBA32BScope.Adware.Softobase
MAXmalware (ai score=77)
Ad-AwareGen:Variant.Application.Strictor.175277
MalwarebytesPUP.Optional.Softomate
ESET-NOD32a variant of Win32/InstallPack.C potentially unwanted
TrendMicro-HouseCallPUA.Win32.InstallPack.B.component
RisingPUA.InstallPack!8.DCBF (CLOUD)
eGambitUnsafe.AI_Score_62%
FortinetRiskware/InstallPack

How to remove Application.Strictor.175277?

Application.Strictor.175277 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment