Malware

Strictor.245734 (B) removal guide

Malware Removal

The Strictor.245734 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Strictor.245734 (B) virus can do?

  • Injection (inter-process)
  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Performs some HTTP requests
  • Uses Windows utilities for basic functionality
  • Attempts to modify proxy settings
  • Attempts to modify browser security settings
  • Harvests information related to installed mail clients
  • The sample wrote data to the system hosts file.
  • Anomalous binary characteristics

Related domains:

acroipm.adobe.com

How to determine Strictor.245734 (B)?


File Info:

crc32: EB29A0E7
md5: 84d7248e668f489d0f6de08cd6ac6d2f
name: TCB_PowerISOCO.exe
sha1: 8bc72a898d98724226b6fc8f49220138e512729e
sha256: a61784d11d3fc7f0aa43e6be94bfb7d9e5793b2d96a34742b955bef7c2ec5169
sha512: bafc0deb6864e8575bd7fbe05665ffe6c703e532e842bc66121d7ceba191aae8b5d559a5be253e8db275482e0df26f703670c9633cb8ae3476a1a68376584629
ssdeep: 6144:6SDc/lxttpCUZtKO5G+4YL7xO/1vAicnWRuK6u64i16Idv01szZlhMc69W8/:xWlxnpCUZtKO1OtYiSWodoBIZOs1lEoI
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Strictor.245734 (B) also known as:

MicroWorld-eScanGen:Variant.Strictor.245734
FireEyeGeneric.mg.84d7248e668f489d
CAT-QuickHealTrojan.Wacatac
McAfeeArtemis!84D7248E668F
AegisLabTrojan.Win32.Generic.lHLS
K7AntiVirusTrojan ( 0051918e1 )
BitDefenderGen:Variant.Strictor.245734
K7GWTrojan ( 0051918e1 )
Cybereasonmalicious.98d987
Invinceaheuristic
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
NANO-AntivirusTrojan.Win32.DelAll.gagnzn
Ad-AwareGen:Variant.Strictor.245734
SophosMal/Generic-S
F-SecureHeuristic.HEUR/AGEN.1112172
DrWebTrojan.Hosts.47795
TrendMicroTROJ_GEN.R002C0PFJ20
EmsisoftGen:Variant.Strictor.245734 (B)
GDataGen:Variant.Strictor.245734
JiangminTrojan.PowerShell.bj
AviraHEUR/AGEN.1112172
Antiy-AVLTrojan/Win32.Tiggre
ArcabitTrojan.Strictor.D3BFE6
MicrosoftTrojan:Win32/Ymacco.AAA6
CynetMalicious (score: 100)
ALYacGen:Variant.Strictor.245734
MAXmalware (ai score=89)
VBA32Trojan.Fuerboos
ZonerTrojan.Win32.85523
TrendMicro-HouseCallTROJ_GEN.R002C0PFJ20
RisingTrojan.Tiggre!8.ED98 (CLOUD)
SentinelOneDFI – Suspicious PE
eGambitUnsafe.AI_Score_98%
FortinetW32/PossibleThreat
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Generic/HEUR/QVM42.3.D00F.Malware.Gen

How to remove Strictor.245734 (B)?

Strictor.245734 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment