Malware

About “Strictor.230978 (B)” infection

Malware Removal

The Strictor.230978 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Strictor.230978 (B) virus can do?

  • Detected script timer window indicative of sleep style evasion
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • A process created a hidden window
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • Uses suspicious command line tools or Windows utilities

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Strictor.230978 (B)?


File Info:

crc32: EF617BF4
md5: 9cb1c1a78ce3efe57eef5f128b43710a
name: 2.exe
sha1: 4310544fbd1b01e9decfb75e5a25592d822447c5
sha256: 111aff9c3d2d5d21d868760f9c758054f506c8af18b7c65e7ea351a977453128
sha512: 2ac56187f2b879b14a30283e8c67667e83af5274f4582a797e70c3572784fb3e8f6b2576b4bb1833047dc557e2877504c52f42eb8705194886e65ec50460808c
ssdeep: 6144:jIIcrXQ4S33w614mazUBHfSdocWYD248T+tvt2Dnsj:NcrNS33L10QdrX5T+tkDn8
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Strictor.230978 (B) also known as:

DrWebBAT.BtcMine.34
MicroWorld-eScanGen:Variant.Strictor.230978
McAfeeRDN/Generic Downloader.x
MalwarebytesTrojan.Downloader
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.BAT.Crypter.tqa8
SangforMalware
K7AntiVirusTrojan-Downloader ( 005291791 )
BitDefenderGen:Variant.Strictor.230978
K7GWTrojan-Downloader ( 005291791 )
CrowdStrikewin/malicious_confidence_90% (W)
TrendMicroTROJ_GEN.R03BC0PLD19
SymantecTrojan.Gen.MBT
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Packed.njRAT-7086562-0
GDataGen:Variant.Strictor.230978
KasperskyHEUR:Trojan.BAT.Asym.gen
AlibabaTrojanDownloader:Win32/Starter.331687d7
NANO-AntivirusTrojan.Script.Miner.fkfjri
ViRobotTrojan.Win32.Z.Strictor.302551
RisingTrojan.CoinMiner/BAT!1.BA78 (CLASSIC)
Ad-AwareGen:Variant.Strictor.230978
SophosMal/Generic-S
ComodoMalware@#5k5xfynz04cv
F-SecureTrojan.TR/Dldr.Agent.ziezq
BaiduBAT.Trojan-Downloader.Agent.al
McAfee-GW-EditionBehavesLike.Win32.Backdoor.dh
FireEyeGen:Variant.Strictor.230978
EmsisoftGen:Variant.Strictor.230978 (B)
IkarusTrojan-Downloader.Win32.Agent
CyrenW32/Trojan.EQDA-4469
WebrootW32.Trojan.Win64.Bitminer
AviraTR/Dldr.Agent.ziezq
ArcabitTrojan.Strictor.D38642
ZoneAlarmHEUR:Trojan.BAT.Asym.gen
MicrosoftTrojan:Win32/Tiggre!plock
AhnLab-V3Trojan/Win32.Tiggre.C3624069
Acronissuspicious
VBA32Trojan.BAT.Asym
MAXmalware (ai score=100)
CylanceUnsafe
PandaTrj/CI.A
ESET-NOD32Win32/TrojanDownloader.Agent.DVC
TrendMicro-HouseCallTROJ_GEN.R03BC0PLD19
AVGSFX:Agent-E [Trj]
Cybereasonmalicious.78ce3e
AvastSFX:Agent-E [Trj]
Qihoo-360Win32/Trojan.008

How to remove Strictor.230978 (B)?

Strictor.230978 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment