Malware

Should I remove “Strictor.8199”?

Malware Removal

The Strictor.8199 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Strictor.8199 virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking
  • Tries to unhook or modify Windows functions monitored by Cuckoo
  • Anomalous binary characteristics

How to determine Strictor.8199?


File Info:

crc32: 00224D4C
md5: 9b0485c8a805565acc1da8001d3dca2e
name: 9B0485C8A805565ACC1DA8001D3DCA2E.mlw
sha1: 6325e82b44cd1658af266d1520804fe6c719077f
sha256: 1dd33ee417d4f41d29ae39e3dbcd16feebd454d2d71b74360a44e9bb1a849018
sha512: a9140f204fa5834f970229be2b18e405ca51d6d5a74a84ebfee3d574733a1fe738ba59fca5204aef386db41142a50975fdd26a96ae516ecc4aabf4f06b6f6a5a
ssdeep: 6144:qzE2F4nJazqM4lwlnR6LsBz52m0/hyyrAR1ieozIcXtYhwtmoWsk:qzhm+qM4wlR6Qb2p/hRrAR1inUcihIfk
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Strictor.8199 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 004f11871 )
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Panda.2401
CynetMalicious (score: 100)
ALYacGen:Variant.Strictor.8199
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 004f11871 )
Cybereasonmalicious.8a8055
CyrenW32/Trojan.CHE.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.CWMI
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Foreign.nvsk
BitDefenderGen:Variant.Strictor.8199
NANO-AntivirusTrojan.Win32.Strictor.evvmne
MicroWorld-eScanGen:Variant.Strictor.8199
Ad-AwareGen:Variant.Strictor.8199
SophosML/PE-A + Mal/Ransom-EE
ComodoTrojWare.Win32.Zbot.EZXT@7tgdwr
BitDefenderThetaAI:Packer.3F47FDDE20
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.fc
FireEyeGeneric.mg.9b0485c8a805565a
EmsisoftGen:Variant.Strictor.8199 (B)
AviraHEUR/AGEN.1112598
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.23D7B93
MicrosoftTrojan:Win32/Zbot.YTL!MTB
GDataGen:Variant.Strictor.8199
Acronissuspicious
McAfeeGenericRXDZ-EC!9B0485C8A805
MAXmalware (ai score=99)
VBA32BScope.Trojan.Agent
MalwarebytesMalware.AI.3586241266
PandaTrj/GdSda.A
RisingMalware.Heuristic!ET#100% (RDMK:cmRtazrN8Ujd4Ng3Bs8M8i6zkeyd)
YandexTrojan.GenAsa!vk9x4Jx99BM
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.FCAB!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Strictor.8199?

Strictor.8199 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment