Malware

Strictor.231560 information

Malware Removal

The Strictor.231560 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Strictor.231560 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (3 unique times)
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Attempts to identify installed AV products by installation directory
  • Attempts to identify installed AV products by registry key
  • Attempts to modify proxy settings

Related domains:

d1ql3z8u1oo390.cloudfront.net
d3vngcy706h320.cloudfront.net
alt.springshirt.site
d2adi7hu49xk5t.cloudfront.net
i.postimg.cc

How to determine Strictor.231560?


File Info:

crc32: 6D26B816
md5: 33c379a570ab58299132df831575507e
name: 1.jpg
sha1: b526d99cf44272555d84994dd5d92c5d26318c69
sha256: 014858756b683a718e8cdeaa100f8dd7b51d0a27ac47a192593c6b5d43ee54ba
sha512: 1692fa2aeec0e92afb8d35df5dd203d9db9399021b7c7b23aed727c085f5e1e95272a822defa9dd987ad5dfcb7596460812060e83f050b8b47f5765247143328
ssdeep: 24576:bJlh9bDB8shRdrEAbm4zChVPKXkOI2vjWKnCSRZ6POPn:bJYydYAm4zG1OljWKCSKPOPn
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Strictor.231560 also known as:

MicroWorld-eScanGen:Variant.Strictor.231560
FireEyeGeneric.mg.33c379a570ab5829
McAfeeArtemis!33C379A570AB
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Strictor.231560
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.570ab5
ArcabitTrojan.Strictor.D38888
TrendMicroTROJ_GEN.R002C0PLA19
BitDefenderThetaAI:Packer.641754421F
F-ProtW32/Agent.BKO.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Kryptik.GYRB
APEXMalicious
AvastWin32:Trojan-gen
KasperskyTrojan.Win32.Biodata.dwjf
AlibabaTrojan:Win32/Kryptik.855e2aa3
ViRobotTrojan.Win32.Z.Strictor.1144349
AegisLabTrojan.Win32.Biodata.4!c
RisingTrojan.Kryptik!1.C090 (CLASSIC)
Ad-AwareGen:Variant.Strictor.231560
EmsisoftGen:Variant.Strictor.231560 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen3
DrWebTrojan.Vittalia.18195
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Backdoor.tc
FortinetW32/Kryptik.BVKS!tr
Trapminemalicious.high.ml.score
SophosIStartSurfInstaller (PUA)
IkarusTrojan.Win32.Crypt
CyrenW32/Agent.BKO.gen!Eldorado
MaxSecureTrojan.Malware.300983.susgen
AviraTR/Crypt.XPACK.Gen3
MAXmalware (ai score=85)
Antiy-AVLGrayWare/Win32.Kryptik.guot
Endgamemalicious (high confidence)
MicrosoftSoftwareBundler:Win32/Prepscram.CB!MTB
SUPERAntiSpywareAdware.IStartSurf/Variant
AhnLab-V3PUP/Win32.StartSurf.R196040
ZoneAlarmTrojan.Win32.Biodata.dwjf
Acronissuspicious
ALYacGen:Variant.Strictor.231560
VBA32Trojan.Biodata
MalwarebytesTrojan.IStartSurf
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0PLA19
YandexTrojan.Biodata!
GDataWin32.Trojan.Kryptik.OS
AVGWin32:Trojan-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_80% (D)
Qihoo-360HEUR/QVM06.3.BDCD.Malware.Gen

How to remove Strictor.231560?

Strictor.231560 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment