Malware

Strictor.192490 removal tips

Malware Removal

The Strictor.192490 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Strictor.192490 virus can do?

  • Creates RWX memory
  • Drops a binary and executes it
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is likely packed with VMProtect
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Strictor.192490?


File Info:

crc32: 28E2FA65
md5: e51b8a82d9751d5002a1937c588e8cb3
name: fantasy1.exe
sha1: 57ca2b21a591f196a51b61a4f9151548f31c4600
sha256: c58f46271ad313e32509a1e39ecf1a67245399b818a9c25c501c0fe520d45b45
sha512: 5ed9945f5035e1e3b291a359defa8e85109adc8e642d8e663371986739a0867ec360c23714b6a0a43423a693cc29efe81c7ca19cdb1e01ed3f46d8f8d9545522
ssdeep: 196608:lmsmmd3LhKIrHsF6coZBjmx1uiRq5izxVl5gm4nUAtAJxtp5So8leZ:ld77rTnmx1JRq+ngmVyCtp5t
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x4f5cx8005x7248x6743x6240x6709 x8bf7x5c0ax91cdx5e76x4f7fx7528x6b63x7248
FileVersion: 1.29.169.2
Comments: x672cx7a0bx5e8fx4f7fx7528x6613x8bedx8a00x7f16x5199(http://www.eyuyan.com)
ProductName: x7effx6c34x7075Login
ProductVersion: 1.29.169.2
FileDescription: x7effx6c34x7075Login
Translation: 0x0804 0x04b0

Strictor.192490 also known as:

BkavHW32.Packed.
MicroWorld-eScanGen:Variant.Strictor.192490
Qihoo-360Generic/Trojan.524
McAfeeArtemis!E51B8A82D975
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
K7AntiVirusAdware ( 004b8e1b1 )
BitDefenderGen:Variant.Strictor.192490
K7GWAdware ( 004b8e1b1 )
CrowdStrikewin/malicious_confidence_100% (D)
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:CrypterX-gen [Trj]
GDataWin32.Application.PUPStudio.A
RisingMalware.Heuristic!ET#100% (RDMK:cmRtazrTAciOGX+pp4NNkJ2G/yNg)
Ad-AwareGen:Variant.Strictor.192490
EmsisoftGen:Variant.Strictor.192490 (B)
F-SecureTrojan.TR/Kryptik.prmby
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.SoftPulse.wc
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.e51b8a82d9751d50
IkarusTrojan.Win32.Krypt
AviraTR/Kryptik.prmby
MAXmalware (ai score=86)
Endgamemalicious (high confidence)
ArcabitTrojan.Strictor.D2EFEA
MicrosoftTrojan:Win32/Wacatac.D!ml
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34106.@B0@aGEDKFdb
ALYacGen:Variant.Strictor.192490
ESET-NOD32a variant of Win32/GenKryptik.DLII
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetRiskware/GenKryptik
AVGWin32:CrypterX-gen [Trj]
Cybereasonmalicious.2d9751

How to remove Strictor.192490?

Strictor.192490 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment