Malware

About “Strictor.208621” infection

Malware Removal

The Strictor.208621 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Strictor.208621 virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Reads data out of its own binary image
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Anomalous binary characteristics

Related domains:

css.jipinfeiche.cn
css.suzhouleizhen.com
css.taicike.com

How to determine Strictor.208621?


File Info:

crc32: 6F42EC8B
md5: 0d2224944741f92720d77638b8891eb9
name: guowangdifuchou.exe
sha1: 497edb419465b3655c60fb70b2e2702fbef2ce9f
sha256: c9a4f5ab18c4b382c0290377d269b62a13cbfbf78e8031690b537fed55435699
sha512: 7eb918d2c960ce56be403302b1eb9024e6f09755d5c7c8b62ac7538bb8c306ea09518ef398c46c0238118888b48f839218a2fccbfa5bd7131b53dc85e3dc7690
ssdeep: 393216:wFW+GnGod6Pw5Pfa+yj5Ta+DB77/srC+iFR:wEGod6Pw5Ha+iha+DRUrC+ij
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright: (C)
ProductName:
FileVersion:
FileDescription: Producer
Translation: 0x0804 0x03a8

Strictor.208621 also known as:

BkavW32.HfsAdware.A41A
MicroWorld-eScanGen:Variant.Strictor.208621
FireEyeGen:Variant.Strictor.208621
CAT-QuickHealTrojan.MauvaiseRI.S5252149
ALYacGen:Variant.Strictor.208621
CylanceUnsafe
ZillyaAdware.KuaibaCRTD.Win32.183
K7AntiVirusAdware ( 005524301 )
BitDefenderGen:Variant.Strictor.208621
K7GWAdware ( 005524301 )
Cybereasonmalicious.44741f
TrendMicroTROJ_SPNR.15AE15
APEXMalicious
ClamAVWin.Dropper.Gandcrab-7077239-0
GDataGen:Variant.Strictor.208621
Kasperskynot-a-virus:AdWare.Win32.Agent.jkzp
AlibabaAdWare:Win32/Kuaiba.0ff64d7c
NANO-AntivirusRiskware.Win32.Kuaiba.ebxjry
Ad-AwareGen:Variant.Strictor.208621
ComodoApplication.Win32.Kuaiba.BC@5np13a
F-SecureHeuristic.HEUR/AGEN.1021182
DrWebTrojan.DownLoader12.10274
Invinceaheuristic
EmsisoftGen:Variant.Strictor.208621 (B)
WebrootW32.Adware.Gen
AviraHEUR/AGEN.1021182
Antiy-AVLTrojan/Win32.TSGeneric
Endgamemalicious (high confidence)
ArcabitTrojan.Strictor.D32EED
ZoneAlarmnot-a-virus:AdWare.Win32.Agent.jkzp
MicrosoftPUA:Win32/Kuaiba
AhnLab-V3Adware/Win32.Kuaiba.C930936
McAfeeArtemis!0D2224944741
MAXmalware (ai score=83)
VBA32AdWare.Agent
MalwarebytesAdware.Kuaiba
ESET-NOD32Win32/Adware.Kuaiba.H
TrendMicro-HouseCallTROJ_GEN.R002H0CJV19
TencentWin32.Trojan.Falsesign.Fru
YandexPUA.Kuaiba!
eGambitUnsafe.AI_Score_72%
FortinetRiskware/Generic.AC.17A66
AVGWin32:PUP-gen [PUP]
Qihoo-360QVM42.0.Malware.Gen

How to remove Strictor.208621?

Strictor.208621 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment