Malware

How to remove “Strictor.229943”?

Malware Removal

The Strictor.229943 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Strictor.229943 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Strictor.229943?


File Info:

crc32: 1F89649C
md5: bf1e8e061028c8aa2817a3854960dd98
name: XZM.exe
sha1: 34eac1d57a872d25a8787f2330f8dc5235e82d14
sha256: fb8715c9b4f3ee7d4572e285069ea52c998d8e55bb178397f2f8783e02ea6857
sha512: dd18be6d5ec1288538f1505ee6f55552860e0def999525f7b2ba2cfc138057e5c53230fd91c9769c619d773e19de09467953b82ae0daf73626b5f91b6668867f
ssdeep: 49152:0NVUcpiauhVZBfLrTcInFpfn5OI3qsxvrXav:0zUcpi/hL5LPFFB8WTJrqv
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: x6240x6709x6743x5f52x6df1x5733x5e02x946bx667ax9020x79d1x6280x6709x9650x516cx53f8x6240x6709
FileVersion: 2.5.0.0
Comments: x6df1x5733x5e02x946bx667ax9020x79d1x6280x6709x9650x516cx53f8
ProductName: x6613x8bedx8a00x7a0bx5e8f
ProductVersion: 2.5.0.0
FileDescription: x946bx667ax9020 x667ax80fdx7ec8x7aefx8bbex5907x7ef4x4feex67e5x8be2x7cfbx7edf
Translation: 0x0804 0x04b0

Strictor.229943 also known as:

MicroWorld-eScanGen:Variant.Strictor.229943
FireEyeGeneric.mg.bf1e8e061028c8aa
CAT-QuickHealProgram.Uwasson
McAfeeArtemis!BF1E8E061028
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusAdware ( 005071f51 )
BitDefenderGen:Variant.Strictor.229943
K7GWAdware ( 005071f51 )
Cybereasonmalicious.57a872
TrendMicroTROJ_GEN.R020C0PKC19
F-ProtW32/Agent.EW.gen!Eldorado
APEXMalicious
AvastWin32:Malware-gen
GDataGen:Variant.Strictor.229943
NANO-AntivirusVirus.Win32.Agent.dvixmz
AegisLabRiskware.Win32.Strictor.1!c
TencentWin32.Packed.Multipacked.Pgmw
Endgamemalicious (moderate confidence)
EmsisoftGen:Variant.Strictor.229943 (B)
ComodoMalware@#3vsq6umb24u17
F-SecureTrojan.TR/StartPage.exruo
DrWebTrojan.StartPage1.58520
Invinceaheuristic
McAfee-GW-EditionFlyagent.d
SophosGeneric PUA DE (PUA)
CyrenW32/Agent.EW.gen!Eldorado
AviraTR/StartPage.exruo
MAXmalware (ai score=80)
Antiy-AVLGrayWare/Win32.Uwasson
MicrosoftTrojan:Win32/Wacatac.C!ml
ArcabitTrojan.Strictor.D38237
Acronissuspicious
VBA32TScope.Malware-Cryptor.SB
ALYacGen:Variant.Strictor.229943
Ad-AwareGen:Variant.Strictor.229943
PandaTrj/CI.A
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
TrendMicro-HouseCallTROJ_GEN.R020C0PKC19
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Agent.65CA!tr
BitDefenderThetaGen:NN.ZexaF.34082.eoKfaKz8xgiH
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Strictor.229943?

Strictor.229943 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment