Categories: Malware

Strictor.273514 malicious file

The Strictor.273514 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Strictor.273514 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Strictor.273514?


File Info:

name: 18BA70BB0CB37ECA7CD1.mlwpath: /opt/CAPEv2/storage/binaries/b083639f190ff9bbaac97b9a100a247b432bb3e8a5f769a95b97f00a66a280e1crc32: EEDC0703md5: 18ba70bb0cb37eca7cd1d82fa8cca44dsha1: 83dbb76be971463a2e85893d9651c7b83b19c8c5sha256: b083639f190ff9bbaac97b9a100a247b432bb3e8a5f769a95b97f00a66a280e1sha512: faddf0bb385b4bf862051a551984047c5ee316d168f6cb86792234d35203360c974b08b93654feaf565345c9aa5d22600ddc8752d08e33cbb42af1bd2e34f368ssdeep: 12288:autwfRlLah15lXNXTzglTz4J9SEVwhl55t1UGafAJkkt+qOEO80lSoSs:aewfDLk15dNM4Hrw5tCqTtpOEO8y5type: PE32 executable (GUI) Intel 80386, for MS Windowstlsh: T15FE42393CB812837EE8DEC36DB2FB947354A5CA661C3DC3573D9414AA904B7092374DAsha3_384: e624c402c635afec4d8c47f89dadcec4f01f67abf1700a0a6c5930ba9810c02a143792e80902236a81520e12e76980a7ep_bytes: 60be00c08c008dbe0050b3ff5789e58dtimestamp: 2011-07-03 18:39:53

Version Info:

Translation: 0x0409 0x04b0Comments: Chatham MalaysiaCompanyName: Michelin Venus Americanism Alvarez SaxonyFileDescription: Moravia EnglewoodLegalTrademarks: Gilmore HanleyProductName: Shylock KellyFileVersion: 3.05.0002ProductVersion: 3.05.0002InternalName: jocOriginalFilename: joc.exe

Strictor.273514 also known as:

DrWeb Trojan.Packed.21773
MicroWorld-eScan Gen:Variant.Strictor.273514
FireEye Generic.mg.18ba70bb0cb37eca
McAfee GenericRXAA-AA!18BA70BB0CB3
Cylance Unsafe
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 0027f5671 )
K7GW Trojan ( 0027f5671 )
Cybereason malicious.b0cb37
BitDefenderTheta AI:Packer.1EB76DA820
Cyren W32/VBcrypt.U.gen!Eldorado
Elastic malicious (moderate confidence)
ESET-NOD32 a variant of Win32/Injector.HLM
ClamAV Win.Malware.Ursu-9952723-0
Kaspersky UDS:Worm.Win32.Shakblades.yib
BitDefender Gen:Variant.Strictor.273514
SUPERAntiSpyware Trojan.Agent/Gen-Sincon
Avast Win32:Trojan-gen
Tencent Malware.Win32.Gencirc.10d06d29
Ad-Aware Gen:Variant.Strictor.273514
Sophos Mal/VBCheMan-C
McAfee-GW-Edition BehavesLike.Win32.Trojan.jc
SentinelOne Static AI – Malicious PE
Emsisoft Gen:Variant.Strictor.273514 (B)
Ikarus Worm.Win32.Drefir
Avira TR/Dropper.Gen
Microsoft Trojan:Win32/Wacatac.B!ml
GData Gen:Variant.Strictor.273514
Cynet Malicious (score: 100)
AhnLab-V3 Trojan/Win32.VBKrypt.R10028
ALYac Gen:Variant.Strictor.273514
Malwarebytes Backdoor.Bot
APEX Malicious
MAX malware (ai score=82)
Fortinet W32/VBKrypt.CZLQ!tr
AVG Win32:Trojan-gen
CrowdStrike win/malicious_confidence_90% (W)

How to remove Strictor.273514?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

Malware.AI.148074552 malicious file

The Malware.AI.148074552 is considered dangerous by lots of security experts. When this infection is active,…

24 mins ago

About “Trojan-Downloader.Win32.Upatre.fxzr” infection

The Trojan-Downloader.Win32.Upatre.fxzr is considered dangerous by lots of security experts. When this infection is active,…

2 hours ago

What is “Script:SNH-gen [Drp]”?

The Script:SNH-gen [Drp] is considered dangerous by lots of security experts. When this infection is…

2 hours ago

Backdoor.MSIL.Bladabindi.cguk removal guide

The Backdoor.MSIL.Bladabindi.cguk is considered dangerous by lots of security experts. When this infection is active,…

2 hours ago

Should I remove “W32/Autorun-BXQ”?

The W32/Autorun-BXQ is considered dangerous by lots of security experts. When this infection is active,…

2 hours ago

What is “Worm.Win32.AutoRun.gms”?

The Worm.Win32.AutoRun.gms is considered dangerous by lots of security experts. When this infection is active,…

2 hours ago