Malware

How to remove “Strictor.6773”?

Malware Removal

The Strictor.6773 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Strictor.6773 virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Executed a process and injected code into it, probably while unpacking
  • Likely installs a bootkit via raw harddisk modifications
  • Deletes its original binary from disk
  • Attempts to restart the guest VM
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine Strictor.6773?


File Info:

crc32: ABD8AE82
md5: 8982730e0befdfa7b0ccfe34ecd2a508
name: 8982730E0BEFDFA7B0CCFE34ECD2A508.mlw
sha1: f6009a4b1047f5aabf439f1370b35f5a68478ae0
sha256: 65f51de6fce7b6612eebe5d6a2ef3800c536b141b58635f57d27ce661ce53fc3
sha512: 3d92db948132f327f1d02133ea4519a81ce521cd142faa0d4d34975f03dce2b6a56e6f56184401326f2ed260fad11420f9fdc9ee1a80bcf55332395c8ca9f137
ssdeep: 768:tUTRJ72VOjweqApDmNFpV1uqQ44yRmDrVLc87U66eIP0mCST8R9P:WaOFqAYNFHq4ac8z6Um2
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Strictor.6773 also known as:

Elasticmalicious (high confidence)
DrWebTrojan.MBRlock.6
CynetMalicious (score: 100)
ALYacGen:Variant.Strictor.6773
CylanceUnsafe
ZillyaTrojan.Mbro.Win32.1928
SangforTrojan.Win32.Save.a
Cybereasonmalicious.e0befd
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.WON
APEXMalicious
AvastFileRepMalware
KasperskyTrojan-Ransom.Win32.Mbro.auqz
BitDefenderGen:Variant.Strictor.6773
NANO-AntivirusTrojan.Win32.Mbro.wkhcb
ViRobotTrojan.Win32.A.Mbro.59392.D[UPX]
MicroWorld-eScanGen:Variant.Strictor.6773
TencentWin32.Trojan.Mbro.caby
Ad-AwareGen:Variant.Strictor.6773
ComodoMalware@#l5zyjecwea6r
BitDefenderThetaAI:Packer.00B0A6CC21
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericRXNY-DP!DB7C007D046D
FireEyeGeneric.mg.8982730e0befdfa7
EmsisoftGen:Variant.Strictor.6773 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan/Generic.ainzr
WebrootW32.Trojan.Gen
AviraBDS/Backdoor.Gen5
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.516EE
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:Win32/Genasom
ArcabitTrojan.Strictor.D1A75
AegisLabTrojan.Win32.Mbro.j!c
GDataGen:Variant.Strictor.6773
AhnLab-V3Trojan/Win32.Mbro.R34730
McAfeeArtemis!8982730E0BEF
MAXmalware (ai score=88)
VBA32BScope.Trojan.Encoder
PandaGeneric Malware
RisingRansom.Genasom!8.293 (CLOUD)
YandexTrojan.GenAsa!MSC8T/ILswI
IkarusTrojan-Ransom.Mbro
FortinetW32/Mbro.ADS!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Strictor.6773?

Strictor.6773 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment