Malware

Strictor.179151 (file analysis)

Malware Removal

The Strictor.179151 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Strictor.179151 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Creates a copy of itself

How to determine Strictor.179151?


File Info:

crc32: 81BD754A
md5: 09b06fa3f1fadb21006c1fa79c75c536
name: 09B06FA3F1FADB21006C1FA79C75C536.mlw
sha1: 390e672e1caaf8ea8132073c7d0994b321a81b9a
sha256: 7eca26836fd75e64f83e810837dacc8b4c7b44ef1213e5872379a9b5c9a8a063
sha512: 756cb205322d1b8edad681049e8a9e7de003f1e41fee5cc508f2b2f930d037bea0c0c8e9f7bff7f043731f3b4f05b1d56167b749846c16700882a68ecd90ae7d
ssdeep: 12288:zC+dTMLa+D+fOH3GSiz1k8jiqvUqZvs14bqhilMN:hM2+qfmGVz1DjHs4wZ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2016 All rights reserved. Abbott Laboratories
Assembly Version: 7.5.7.7
InternalName: Initiatives
FileVersion: 7.5.7.7
CompanyName: Abbott Laboratories
PrivateBuild: 7.5.7.7
LegalTrademarks: Copyright xa9 2016 All rights reserved. Abbott Laboratories
Comments: Different Brokerages Created Bump Errands Convenience
ProductName: Initiatives
Languages: English
ProductVersion: 7.5.7.7
FileDescription: Different Brokerages Created Bump Errands Convenience
OriginalFilename: Initiatives.exe
Translation: 0x0409 0x04b0

Strictor.179151 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Stealer.23680
CynetMalicious (score: 100)
ALYacTrojan.Ransom.Scarab
CylanceUnsafe
ZillyaTrojan.Yakes.Win32.69476
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaTrojan:Win32/Filecoder.891b7ac4
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
CyrenW32/Filecoder.TKKQ-4114
SymantecDownloader
ESET-NOD32Win32/Filecoder.FS
APEXMalicious
AvastWin32:MalOb-HU [Cryp]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Strictor.179151
NANO-AntivirusTrojan.Win32.Yakes.fikyil
MicroWorld-eScanGen:Variant.Strictor.179151
TencentMalware.Win32.Gencirc.10cd48b0
Ad-AwareGen:Variant.Strictor.179151
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34628.Uq0@aeLvMZpi
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_SCARAB.THOIBGAH
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
FireEyeGeneric.mg.09b06fa3f1fadb21
EmsisoftTrojan-Ransom.Scarab (A)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Yakes.abim
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/Dynamer!rfn
AegisLabTrojan.Win32.Yakes.4!c
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Strictor.179151
AhnLab-V3Malware/RL.Generic.R252423
Acronissuspicious
McAfeeGenericRXGS-JN!09B06FA3F1FA
MAXmalware (ai score=100)
VBA32Trojan.Sonbokli
PandaGeneric Suspicious
TrendMicro-HouseCallRansom_SCARAB.THOIBGAH
RisingRansom.Agent!8.6B7 (CLOUD)
YandexTrojan.GenAsa!MJ9tCBgGXPU
IkarusTrojan-Ransom.Crypter
FortinetW32/Generic.AC.41D0C6
AVGWin32:MalOb-HU [Cryp]
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Generic.HgIASQkA

How to remove Strictor.179151?

Strictor.179151 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment