Malware

Should I remove “Strictor.174397 (B)”?

Malware Removal

The Strictor.174397 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Strictor.174397 (B) virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid

How to determine Strictor.174397 (B)?


File Info:

name: 6C29EB2718F2483907F6.mlw
path: /opt/CAPEv2/storage/binaries/6c812afdb1869bd99a411a95093fee07c9b37e0ec6f3017dd9856b85408c0bec
crc32: 3DB5228A
md5: 6c29eb2718f2483907f675b89c926419
sha1: 0c7a6ca4a7d5d41206bf6cd652c536d830cd1a66
sha256: 6c812afdb1869bd99a411a95093fee07c9b37e0ec6f3017dd9856b85408c0bec
sha512: a56789d2e61223db7c95e79db99b57feb3e48122acf6aadea1a39d3970407ade5ce6a2b5730f54e5a089e3854e40ecbc64180617201d892691e9f2923a7fb544
ssdeep: 12288:NCdOy3vVrKxR5CXbNjAOxK/j2n+4YG/6c1mFFja3mXgcjfRlgsUBga/gSQ:NCdxte/80jYLT3U1jfsWa/gSQ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19A059C2273DDD360CB669173BF6977016EBF7C610630B85B2F882D79A960171262C7A3
sha3_384: 9870ceb4feff8716b55c976cd7389e78f86c00bba722c639cebe57f679576f9d3275719186db431d7e43289dc6790239
ep_bytes: e8b8d00000e97ffeffffcccccccccccc
timestamp: 2022-07-19 22:31:03

Version Info:

CompanyName: SgbIsHidR
FileVersion: 0.0.0.0
Translation: 0x0809 0x04b0

Strictor.174397 (B) also known as:

BkavW32.AIDetect.malware2
MicroWorld-eScanGen:Variant.Strictor.174397
FireEyeGen:Variant.Strictor.174397
McAfeeTrojan-aitinject.af
VIPREGen:Variant.Strictor.174397
SangforVirus.Win32.Save.a
K7AntiVirusTrojan ( 0054bc841 )
K7GWTrojan ( 0054bc841 )
Cybereasonmalicious.718f24
VirITTrojan.Win32.MulDrop8.HPR
CyrenW32/FakeDoc.R.gen!Eldorado
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Autoit.OGC
TrendMicro-HouseCallTrojan.AutoIt.VICTORYGATE.SM
KasperskyUDS:Trojan.Script.Generic
BitDefenderGen:Variant.Strictor.174397
AvastAutoIt:Runner-BG [Trj]
Ad-AwareGen:Variant.Strictor.174397
EmsisoftGen:Variant.Strictor.174397 (B)
ComodoMalware@#34nj4a8x1h4ma
TrendMicroTrojan.AutoIt.VICTORYGATE.SM
McAfee-GW-EditionBehavesLike.Win32.Trojanaitinject.ch
SophosTroj/Autoit-CPL
GDataGen:Variant.Strictor.174397
AviraWORM/FakeExt.Gen8
MAXmalware (ai score=83)
Antiy-AVLTrojan/Generic.ASCommon.16F
ArcabitTrojan.Strictor.D2A93D
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.C2869583
ALYacGen:Variant.Strictor.174397
MalwarebytesPredatorTheThief.Spyware.Stealer.DDS
APEXMalicious
RisingMalware.UDM!1.BB61 (CLASSIC)
IkarusTrojan.Win32.Autoit
MaxSecureTrojan.Malware.300983.susgen
FortinetAutoIt/Agent.OGC!tr
AVGAutoIt:Runner-BG [Trj]
CrowdStrikewin/malicious_confidence_60% (D)

How to remove Strictor.174397 (B)?

Strictor.174397 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment