Malware

What is “Strictor.250325 (B)”?

Malware Removal

The Strictor.250325 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Strictor.250325 (B) virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Strictor.250325 (B)?


File Info:

crc32: 91D0E59F
md5: c2cca60b0a0def7ab487c38fbd4a78b0
name: C2CCA60B0A0DEF7AB487C38FBD4A78B0.mlw
sha1: 5395fffe159ffa18b88fe3fa8aaefbd7bb266188
sha256: 110efc80fb6beb8f083a4885ad6dec38303429c824d42e0661a05ce1ff449930
sha512: 49614f578f3ec3293172d57496d4fe4fabcd1e0d09256873b3e3a846ed781cf7758995b383406e795c83f6bea76c2b3f09085b2bd7f852e34f2f2998940da52e
ssdeep: 6144:J/H9i72IQZjBrq3SRFtrg4rQvswEXFcnk6O:J/o7ZQZjBrj7LrEslqnXO
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: x5343x624bx667ax80fdx6253x94c3 x7248x6743x6240x6709 2010x5e74-2021x5e74
FileVersion: 4.0.3.0
CompanyName: x601dx5a07x5c60x864e
Comments: x5343x624bx667ax80fdx6253x94c3
ProductName: x5343x624bx667ax80fdx6253x94c3
ProductVersion: 4.0.3.0
FileDescription: x5343x624bx667ax80fdx6253x94c3
Translation: 0x0804 0x04b0

Strictor.250325 (B) also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacGen:Variant.Strictor.250325
CylanceUnsafe
CrowdStrikewin/malicious_confidence_70% (W)
BitDefenderGen:Variant.Strictor.250325
Cybereasonmalicious.b0a0de
APEXMalicious
NANO-AntivirusTrojan.Win32.Drop.dlhwif
MicroWorld-eScanGen:Variant.Strictor.250325
Ad-AwareGen:Variant.Strictor.250325
SophosGeneric ML PUA (PUA)
BitDefenderThetaGen:NN.ZexaF.34738.qmKfauVw9Zdb
McAfee-GW-EditionBehavesLike.Win32.Picsys.dc
FireEyeGeneric.mg.c2cca60b0a0def7a
EmsisoftGen:Variant.Strictor.250325 (B)
SentinelOneStatic AI – Malicious PE
JiangminPacked.Multi.jiv
AviraTR/ATRAPS.Gen
eGambitUnsafe.AI_Score_79%
Antiy-AVLTrojan/Generic.ASCommon.FB
GDataGen:Variant.Strictor.250325
AhnLab-V3Trojan/Win.Generic.R421720
McAfeeArtemis!C2CCA60B0A0D
MAXmalware (ai score=82)
VBA32Backdoor.BlackHole
TrendMicro-HouseCallTROJ_GEN.R005H0CF921
RisingMalware.Heuristic!ET#76% (RDMK:cmRtazospkFu/PqZDyHohh7Z476v)
IkarusPacked.Win32.Krap
FortinetW32/FlyStudio.C!tr
Paloaltogeneric.ml

How to remove Strictor.250325 (B)?

Strictor.250325 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment