Malware

About “Strictor.253133” infection

Malware Removal

The Strictor.253133 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Strictor.253133 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Vietnamese
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Strictor.253133?


File Info:

crc32: AD160374
md5: dc171d23dfb62217c47795303b8d3e32
name: DC171D23DFB62217C47795303B8D3E32.mlw
sha1: 1669357ca2336530ef8ade069ac54fe7ab18c8ea
sha256: b650350fb7bdd840c9cc16502e902983d7fb5faf00ed6f60ef8439a6ccd4e33c
sha512: b37caeefcf28946f616c94347d2674d55f5d507e6c1f8209fc798625b7aba1c8dfcf7d47486ff3eda3099a0d64e72da26332d31b72b24c4a46b0a59aadcb6274
ssdeep: 12288:ag83oBuqmVFmaoZ9cK6OxHiCjFzQZm9QIPmcadX2IGVpjY/:agWJ0NZlxr1WKg
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Notepad
InternalName: Notepad
FileVersion: Notepad
CompanyName: Notepad
LegalTrademarks: Notepad
ProductName: Notepad
ProductVersion: Notepad
FileDescription: Notepad
OriginalFilename: Notepad
Translation: 0x0409 0x04e4

Strictor.253133 also known as:

BkavW32.AIDetectVM.malware2
DrWebTrojan.Siggen11.55468
MicroWorld-eScanGen:Variant.Strictor.253133
FireEyeGen:Variant.Graftor.871414
ALYacGen:Variant.Graftor.871414
MalwarebytesSpyware.FormBook
AegisLabTrojan.Win32.Bulz.4!c
SangforMalware
K7AntiVirusTrojan ( 7000000f1 )
BitDefenderGen:Variant.Strictor.253133
K7GWTrojan ( 7000000f1 )
CyrenW32/Trojan.CQLJ-5792
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:RATX-gen [Trj]
ClamAVWin.Malware.Bulz-9809969-0
KasperskyHEUR:Backdoor.Win32.Remcos.gen
AlibabaTrojanDownloader:Win32/Remcos.6deec44a
Ad-AwareGen:Variant.Strictor.253133
SophosMal/Generic-R + Troj/Delf-HKH
F-SecureTrojan.TR/Injector.kueya
TrendMicroTrojanSpy.Win32.QRAT.USMANLF20
McAfee-GW-EditionFareit-FZO!DC171D23DFB6
EmsisoftTrojan.Injector (A)
IkarusTrojan.Inject
WebrootW32.Downloader.Gen
AviraTR/Injector.kueya
KingsoftWin32.Hack.Undef.(kcloud)
MicrosoftTrojan:Win32/Tnega.VAM!MTB
GridinsoftTrojan.Win32.Downloader.oa
ArcabitTrojan.Graftor.DD4BF6
ZoneAlarmHEUR:Backdoor.Win32.Remcos.gen
GDataWin32.Trojan.PSE.3V1UB3
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.C4262992
McAfeeFareit-FZO!DC171D23DFB6
MAXmalware (ai score=84)
VBA32TScope.Trojan.Delf
CylanceUnsafe
PandaTrj/RnkBend.A
ESET-NOD32Win32/TrojanDownloader.Delf.DCO
TrendMicro-HouseCallTrojanSpy.Win32.QRAT.USMANLF20
RisingTrojan.Injector!1.D048 (CLASSIC)
YandexTrojan.Igent.bUZGIx.22
FortinetW32/Fareit.FZO!tr
AVGWin32:RATX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Generic/Trojan.217

How to remove Strictor.253133?

Strictor.253133 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment