Malware

Should I remove “Strictor.116424”?

Malware Removal

The Strictor.116424 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Strictor.116424 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • A process created a hidden window
  • Creates an excessive number of UDP connection attempts to external IP addresses
  • Uses Windows utilities for basic functionality
  • Attempts to delete volume shadow copies
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Exhibits behavior characteristic of Cerber ransomware
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine Strictor.116424?


File Info:

crc32: D68E00A5
md5: bc5b30ccb66a58d9a165063db1ece502
name: BC5B30CCB66A58D9A165063DB1ECE502.mlw
sha1: 593e4b3c493c2d6b21ebbccf0010c1a22a838ba6
sha256: 54ef6b27e238b3ff049f0fb61b0341c0b7a8e0859845f927f02f6186cad58291
sha512: b81e6213a09e79bef11b0cf682ca7009507d056b56f27e75badefd1a4cf2a9e253b3916ef23d1ead292fb379a7a2c29c5574677b5674105c4ef141c6b9fd6a9d
ssdeep: 12288:WRzgjJDnd5nMci66aG293m2nIX7neOyjirujGWlLJ8B:2gjJTd9Mh66M9/njtjJuB
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Strictor.116424 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0055e3ef1 )
DrWebTrojan.Encoder.6534
ClamAVWin.Dropper.Cerber-9170546-0
ALYacGen:Variant.Strictor.116424
CylanceUnsafe
SangforSuspicious.Win32.Strictor.116424
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderGen:Variant.Strictor.116424
K7GWTrojan ( 0055e3ef1 )
Cybereasonmalicious.cb66a5
SymantecRansom.Cerber
ESET-NOD32Win32/Filecoder.Cerber.B
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 99)
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojan:Win32/Cerber.487ebf6f
NANO-AntivirusTrojan.Win32.Zerber.eifazv
MicroWorld-eScanGen:Variant.Strictor.116424
TencentWin32.Trojan.Inject.Auto
Ad-AwareGen:Variant.Strictor.116424
ComodoMalware@#2vmcgezr35zdz
TrendMicroRansom_CERBERENC.SMNS5
McAfee-GW-EditionBehavesLike.Win32.Dropper.gc
FireEyeGeneric.mg.bc5b30ccb66a58d9
SophosMal/Generic-S
AviraHEUR/AGEN.1102533
GDataGen:Variant.Strictor.116424
TACHYONRansom/W32.Cerber.491858
AhnLab-V3Trojan/Win32.Zerber.R191051
VBA32Trojan.Encoder
MAXmalware (ai score=86)
MalwarebytesMalware.AI.2506071135
TrendMicro-HouseCallRansom_CERBERENC.SMNS5
FortinetW32/Injector.GD!tr
PandaTrj/CI.A

How to remove Strictor.116424?

Strictor.116424 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment