Malware

Strictor.177925 information

Malware Removal

The Strictor.177925 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Strictor.177925 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is likely packed with VMProtect
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Strictor.177925?


File Info:

crc32: 30E24512
md5: b5ea09d8155dd7bf89b6215ba289eb6b
name: B5EA09D8155DD7BF89B6215BA289EB6B.mlw
sha1: da4aede9a7c55bdf8ab3433f1453ef220c4ba753
sha256: dd428b85da1b230d6d658e51e1880b1a0903f8df54e655e96bfdb346a9882abe
sha512: 9f132817ebc4c7219ac6eb76bd1272b16ad9a442bdf5295f26c5731e5c2df24a29a0324ebe0352fdb7aa36f36d09926c9e09ff0e34ed00955c88d71b2fd1e127
ssdeep: 24576:EXdNTGJu6tE/0gOsj9N8ZIB4VYM7qieknb6Hb5QqL/LR0tyWa5el2BW/c:8GJXkOsj9NnBmRuRqy7Hq8Wa5WSF
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x7248x6743x6240x6709 (C) 2006
InternalName: x5e7fx8054x8fbe SETUP
FileVersion: 2, 0, 0, 0
CompanyName:
PrivateBuild:
LegalTrademarks:
Comments:
ProductName: x5e7fx8054x8fbe SETUP x5e94x7528x7a0bx5e8f
SpecialBuild:
ProductVersion: 2, 0, 0, 0
FileDescription: x5e7fx8054x8fbe SETUP Microsoft x57fax7840x7c7bx5e94x7528x7a0bx5e8f
OriginalFilename: x5e7fx8054x8fbe SETUP.EXE
Translation: 0x0804 0x04b0

Strictor.177925 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Strictor.177925
ALYacGen:Variant.Strictor.177925
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
K7GWTrojan ( 004c2dc01 )
K7AntiVirusTrojan ( 004c2dc01 )
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
BitDefenderGen:Variant.Strictor.177925
Ad-AwareGen:Variant.Strictor.177925
SophosMal/Generic-S
ComodoMalware@#15zsceh4c97om
BitDefenderThetaGen:NN.ZexaF.34170.Az0@aSo2Pebb
VIPRETrojan.Win32.Generic!BT
FireEyeGeneric.mg.b5ea09d8155dd7bf
EmsisoftGen:Variant.Strictor.177925 (B)
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_72%
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Tnega!ml
GDataGen:Variant.Strictor.177925
Acronissuspicious
McAfeeGenericRXFQ-OE!B5EA09D8155D
MAXmalware (ai score=100)
VBA32BScope.Trojan.Wacatac
MalwarebytesMalware.Heuristic.1003
RisingTrojan.Generic@ML.99 (RDML:M4/n7aOAu4IcrNFlIJ5nMg)
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Strictor.177925?

Strictor.177925 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment