Malware

Strictor.263944 removal guide

Malware Removal

The Strictor.263944 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Strictor.263944 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs

How to determine Strictor.263944?


File Info:

crc32: 346D192E
md5: bb8052c0394840a2eb6791dc5aaac0da
name: BB8052C0394840A2EB6791DC5AAAC0DA.mlw
sha1: 01bff6c6b84f76a04356fdd2704343cc384c373d
sha256: 2075536caedf9fdfe63bb487ff6a1c6edb27b6b6a30d6f00dd7eac02eb2f8a9a
sha512: db1d4da16fa93fa947ff288cec8f4556887da0b1043b56f1791f3ea63bd109da7e87668356ff74467c3ea3e646d969f4e2fed7b6062f91c2c0cd822972422ccd
ssdeep: 3072:rUQXuLnX/KccbbbXUSjf6RHn7KdbqyEU:5Xa/32Xf6HWBq5U
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: NJServer.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: NJServer.exe

Strictor.263944 also known as:

K7AntiVirusTrojan ( 004b94fa1 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader10.63222
CynetMalicious (score: 99)
ALYacGen:Variant.Strictor.263944
CylanceUnsafe
ZillyaTrojan.Bladabindi.Win32.99168
SangforTrojan.MSIL.CK.gen
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 004b94fa1 )
Cybereasonmalicious.039484
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Bladabindi.CK.gen
APEXMalicious
AvastWin32:GenMaliciousA-JB [Trj]
ClamAVWin.Packed.njRAT-7783975-1
KasperskyHEUR:Trojan.MSIL.Agent.gen
BitDefenderGen:Variant.Strictor.263944
NANO-AntivirusTrojan.Win32.Agent.dkkfve
MicroWorld-eScanGen:Variant.Strictor.263944
TencentWin32.Trojan.Generic.Phpw
Ad-AwareGen:Variant.Strictor.263944
SophosMal/Generic-R + Mal/Bladabi-H
ComodoMalware@#n8vfztm5fb3a
BitDefenderThetaGen:NN.ZemsilF.34294.iq0@aG1cp7n
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGeneric.dps
FireEyeGeneric.mg.bb8052c0394840a2
EmsisoftGen:Variant.Strictor.263944 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.bzkso
AviraHEUR/AGEN.1111863
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.24B91A7
MicrosoftBackdoor:MSIL/Bladabindi.AL
GDataGen:Variant.Strictor.263944
AhnLab-V3Trojan/Win32.Generic.R131685
McAfeeGeneric.dps
MAXmalware (ai score=99)
VBA32Trojan.MSIL.gen.9
MalwarebytesBackdoor.Bladabindi
PandaGeneric Malware
YandexTrojan.Agent!EaZp9OLFGh8
IkarusBackdoor.MSIL
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Kryptik.HSF!tr
AVGWin32:GenMaliciousA-JB [Trj]
Paloaltogeneric.ml

How to remove Strictor.263944?

Strictor.263944 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment