Categories: Malware

Strictor.246676 removal instruction

The Strictor.246676 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Strictor.246676 virus can do?

  • Presents an Authenticode digital signature
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Strictor.246676?


File Info:

crc32: F742BACBmd5: ba0b71edba1821748ab1b41efe0c7dafname: share_01.exesha1: 067a740da6e06f610955a46b28e7330d999a0c6esha256: 5d5247779ae6fc77c970ea1f984fb6615561a5f0e0d6a933d3397d2bed53e65fsha512: 9ffacc49ad7331fe5bea7af8d6e2a180c215b9bafbae9cc4aa6ebfaf492b2e97663a8422a2a48080026e29ba80cb42d3538cfbfbc3e9b74fd028972c4f444ef6ssdeep: 24576:6Z0Z+Vq4kK0fNsMpfPIlh/1Zho3sx0muSQ2GvXI:6SZwypfNsM29o3oQxXtype: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyright (C) 2020 x4e0ax6d77x5b50x672ax7f51x7edcx79d1x6280x6709x9650x516cx53f8InternalName: news.exeFileVersion: 1.0.0.1CompanyName: x4e0ax6d77x5b50x672ax7f51x7edcx79d1x6280x6709x9650x516cx53f8ProductName: easypdf readerProductVersion: 1.0.0.1FileDescription: x8ff7x4f60x65b0x95fbOriginalFilename: news.exeTranslation: 0x0804 0x04b0

Strictor.246676 also known as:

MicroWorld-eScan Gen:Variant.Strictor.246676
FireEye Gen:Variant.Strictor.246676
CAT-QuickHeal Trojan.IGENERIC
McAfee GenericRXAA-AA!BA0B71EDBA18
Cylance Unsafe
VIPRE Trojan.Win32.Generic!BT
Sangfor Malware
K7AntiVirus Trojan-Downloader ( 0056617b1 )
BitDefender Gen:Variant.Strictor.246676
K7GW Trojan-Downloader ( 0056617b1 )
TrendMicro TROJ_GEN.R011C0PG220
Cyren W32/Trojan.VRTC-1290
Symantec ML.Attribute.HighConfidence
TrendMicro-HouseCall TROJ_GEN.R011C0PG220
Avast Win32:AdwareX-gen [Adw]
GData Gen:Variant.Strictor.246676
Kaspersky not-a-virus:HEUR:AdWare.Win32.ComponentBased.gen
Alibaba Trojan:Win32/ComponentBased.205ec99c
ViRobot Trojan.Win32.Z.Strictor.1010632
Rising Adware.Agent!1.C53A (CLOUD)
Endgame malicious (high confidence)
Sophos Generic PUA AG (PUA)
F-Secure Trojan.TR/Dldr.Adload.dqmce
Zillya Adware.ComponentBased.Win32.65
Emsisoft Gen:Variant.Strictor.246676 (B)
Ikarus Trojan-Downloader.Win32.Adload
Jiangmin AdWare.ComponentBased.ai
Webroot W32.Adware.Gen
Avira TR/Dldr.Adload.dqmce
MAX malware (ai score=99)
Microsoft PUA:Win32/CoinMiner
Arcabit Trojan.Strictor.D3C394
ZoneAlarm not-a-virus:HEUR:AdWare.Win32.ComponentBased.gen
Cynet Malicious (score: 85)
AhnLab-V3 PUP/Win32.AdLoad.C3923949
VBA32 Adware.ComponentBased
ALYac Gen:Variant.Strictor.246676
Ad-Aware Gen:Variant.Strictor.246676
Malwarebytes RiskWare.BitCoinMiner
Panda Trj/RnkBend.A
APEX Malicious
ESET-NOD32 a variant of Win32/TrojanDownloader.Adload.NUS
Tencent Malware.Win32.Gencirc.10cddae6
Fortinet W32/Adload.NUS!tr
AVG Win32:AdwareX-gen [Adw]

How to remove Strictor.246676?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

MSIL/GenKryptik.GXIZ information

The MSIL/GenKryptik.GXIZ is considered dangerous by lots of security experts. When this infection is active,…

1 month ago

Malware.AI.2789448175 (file analysis)

The Malware.AI.2789448175 is considered dangerous by lots of security experts. When this infection is active,…

1 month ago

Jalapeno.1878 removal instruction

The Jalapeno.1878 is considered dangerous by lots of security experts. When this infection is active,…

1 month ago

What is “Trojan.Heur3.LPT.YmKfaKBcBekib”?

The Trojan.Heur3.LPT.YmKfaKBcBekib is considered dangerous by lots of security experts. When this infection is active,…

1 month ago

How to remove “Worm.Win32.Vobfus.exmt”?

The Worm.Win32.Vobfus.exmt is considered dangerous by lots of security experts. When this infection is active,…

1 month ago

About “TrojanDownloader:Win32/Beebone.JO” infection

The TrojanDownloader:Win32/Beebone.JO is considered dangerous by lots of security experts. When this infection is active,…

1 month ago