Malware

Strictor.268809 (file analysis)

Malware Removal

The Strictor.268809 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Strictor.268809 virus can do?

  • At least one process apparently crashed during execution
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Strictor.268809?


File Info:

name: 048EEDFE006BFD274CA0.mlw
path: /opt/CAPEv2/storage/binaries/606514c232918b11e629dbaabda732848cc73cc3664691358f6ce30b37156db9
crc32: 8DAB0733
md5: 048eedfe006bfd274ca010adb667f6d9
sha1: a0ab0df1a3c227f2ffdc8ea0d86af44526ea6503
sha256: 606514c232918b11e629dbaabda732848cc73cc3664691358f6ce30b37156db9
sha512: 5a7aaef94ba51b69e889b119066ed6fd767f841419078278ff9ab15d696500e5a6143df3a0aaa1d307951062a413dd64d8ca23890e04303f95f2523119c3e7b9
ssdeep: 98304:9ZSTV3uoEXAzeK9j2vF+xpqIVLGBuRuvACAiyI0o2MX:2pJEwzLqvFGQWGZyI
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F116DF59BB95C408F0E91935486386A415A3FC909EB247BB7A4DF72E3C382D19E3C793
sha3_384: 9c67f6987a5c12943c033676db554282a7cb6ac651f94f08767e9bf542377d47c7f2e0c16a2613efa989f4911c8cef30
ep_bytes: 1f06fc7efb5ff44182a486d2e6c3a8ef
timestamp: 2018-09-12 23:11:13

Version Info:

CompanyName: BitTorrent Inc.
FileDescription: µTorrent
FileVersion: 3.5.4.44632
InternalName: uTorrent.exe
OriginalFilename: uTorrent.exe
LegalCopyright: ©2018 BitTorrent, Inc. All Rights Reserved.
ProductName: µTorrent
ProductVersion: 3.5.4.44632
SpecialBuild: stable34 stable
Translation: 0x0409 0x04e4

Strictor.268809 also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CylanceUnsafe
BitDefenderGen:Variant.Strictor.268809
SymantecML.Attribute.HighConfidence
APEXMalicious
MicroWorld-eScanGen:Variant.Strictor.268809
EmsisoftGen:Variant.Strictor.268809 (B)
FireEyeGeneric.mg.048eedfe006bfd27
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
AviraTR/Crypt.EPACK.Gen2
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
GDataGen:Variant.Strictor.268809
ALYacGen:Variant.Strictor.268809
YandexTrojan.GenAsa!hijpaLctRTU
MAXmalware (ai score=89)
BitDefenderThetaGen:NN.ZexaF.34182.@B0@amjexNii

How to remove Strictor.268809?

Strictor.268809 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment