Malware

Strictor.17643 malicious file

Malware Removal

The Strictor.17643 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Strictor.17643 virus can do?

  • Creates RWX memory
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Strictor.17643?


File Info:

crc32: 71090893
md5: 682560dd872bcc2d2c579661efc98217
name: 682560DD872BCC2D2C579661EFC98217.mlw
sha1: bcad9057c9e21a8354a00a1f12eecac4f1262427
sha256: de5d41f69a1e4f441f02c9121a4ba2711e8302690f52306b989bdf00d4cb642d
sha512: e9a143334cd99b3efc57e4e404f094d6356b887537b11cce5c6be20306efa01f64470099872a14aec698e97657d0d58752c9ae1b3eb5c27db8d08a4a7b42c5b2
ssdeep: 3072:S4VB7V+qpEydNHZ4c0hH5lPqHZ9nMJAq9jZdR46zlimxfVOfpiWYCSzqgux:SAlV9V0c0tsl4AqJR4U/x8iZCQZu
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Strictor.17643 also known as:

K7AntiVirusTrojan ( 7000000f1 )
LionicVirus.Win32.BHO.n!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader6.21991
CynetMalicious (score: 100)
ALYacGen:Variant.Strictor.17643
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
K7GWTrojan ( 7000000f1 )
Cybereasonmalicious.d872bc
CyrenW32/Backdoor.NKPN-3729
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/BHO.NAN
APEXMalicious
AvastFileRepMalware
KasperskyUDS:Virus.Win32.BHO.a
BitDefenderGen:Variant.Strictor.17643
NANO-AntivirusTrojan.Win32.Delf.eyxyeb
MicroWorld-eScanGen:Variant.Strictor.17643
TencentWin32.Virus.Bho.Wnmj
Ad-AwareGen:Variant.Strictor.17643
SophosMal/Generic-S
ComodoTrojWare.Win32.BHO.NAN@2zuy
BitDefenderThetaGen:NN.ZelphiF.34170.lmGfa4ugPZab
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Autorun.cc
FireEyeGeneric.mg.682560dd872bcc2d
EmsisoftGen:Variant.Strictor.17643 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/BHO.vb
AviraTR/Dldr.Delphi.Gen
eGambitUnsafe.AI_Score_92%
KingsoftWin32.Infected.AutoInfector.a.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Strictor.D44EB
GDataGen:Variant.Strictor.17643
McAfeeArtemis!682560DD872B
MAXmalware (ai score=82)
VBA32BScope.Trojan.Downloader
PandaGeneric Suspicious
RisingTrojan.Delf.rsd (CLASSIC)
IkarusTrojan.Win32.BHO
FortinetW32/BHO.NAN!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Strictor.17643?

Strictor.17643 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment