Worm

About “Worm:Win32/Soltern.M” infection

Malware Removal

The Worm:Win32/Soltern.M is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm:Win32/Soltern.M virus can do?

  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs
  • Likely virus infection of existing system binary
  • Creates a copy of itself
  • Creates a slightly modified copy of itself
  • Anomalous binary characteristics

How to determine Worm:Win32/Soltern.M?


File Info:

crc32: 5ECCA971
md5: 7b4707fcdc6fcf8381ea5ba6fbc0755a
name: 7B4707FCDC6FCF8381EA5BA6FBC0755A.mlw
sha1: b5dbb35664c4aa800710bb5634b2d6e29c53fd32
sha256: 00e3005f4a0823cbfc13c012af98ec8c82861f574daac73ab57a28cb98ca2d46
sha512: af91b8197d7f3b4a8e6709b85fe8f89f0976bb9447d55c5675aa0acd558ab0b20ef145219bbcbc5e9323b92ee7a5f2dd234eb5e29fb4831eeae51edfa4d4462d
ssdeep: 6144:+su1YDl4Ji96fO3TmfMkf5QNm9jFbX4YR:+rK4JnfO3qfv5X9jFDDR
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Worm:Win32/Soltern.M also known as:

BkavW32.AIDetectVM.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.42859863
FireEyeGeneric.mg.7b4707fcdc6fcf83
CAT-QuickHealWorm.Soltern.A.mue
McAfeeW32/Sytro.worm.gen!p2p
VIPREBehavesLike.Win32.Malware.tsc (mx-v)
K7AntiVirusTrojan ( 00005ef11 )
BitDefenderTrojan.GenericKD.42859863
K7GWTrojan ( 00005ef11 )
Cybereasonmalicious.cdc6fc
TrendMicroWORM_SYTRO.SMJ1
BaiduWin32.Trojan.Agent.aaw
CyrenW32/Soltern.ZJVY-4427
SymantecW32.HLLW.Electron
TotalDefenseWin32/Sytro.A
APEXMalicious
ClamAVWin.Worm.Soltern-1
KasperskyP2P-Worm.Win32.Sytro.vhu
NANO-AntivirusTrojan.Win32.Sytro.cyeefp
ViRobotWorm.Win32.A.P2P-Sytro.196354[UPX]
TencentMalware.Win32.Gencirc.10ce0de2
Ad-AwareTrojan.GenericKD.42859863
TACHYONWorm/W32.DP-Sytro.Zen.C
SophosW32/Systro-K
ComodoWorm.Win32.Soltern.jet@5a5fyj
F-SecureWorm.WORM/Systro.K
DrWebWin32.HLLW.Sytro
ZillyaWorm.Sytro.Win32.3
InvinceaML/PE-A + W32/Systro-K
McAfee-GW-EditionBehavesLike.Win32.Sytro.dc
EmsisoftTrojan.GenericKD.42859863 (B)
IkarusWorm.Win32.Soltern
JiangminWorm/Sytro.w
AviraWORM/Systro.K
Antiy-AVLWorm[P2P]/Win32.Sytro
MicrosoftWorm:Win32/Soltern.M
ArcabitTrojan.Generic.D28DFD57
ZoneAlarmP2P-Worm.Win32.Sytro.vhu
GDataWin32.Worm.Soltern.A
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.HDC.C40380
Acronissuspicious
BitDefenderThetaAI:Packer.DD7C5F9E21
MAXmalware (ai score=80)
VBA32BScope.TrojanDropper.Delf
ZonerTrojan.Win32.36407
ESET-NOD32a variant of Win32/Soltern.NAA
TrendMicro-HouseCallWORM_SYTRO.SMJ1
RisingMalware.Qiwmonk!8.E93B (TFE:4:va2p2LU7OeP)
YandexWorm.P2P.Sytro!o1hJ5VSwEtE
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_100%
FortinetW32/Delf.E867!tr
CrowdStrikewin/malicious_confidence_70% (D)
Qihoo-360Worm.Win32.Sytro.C

How to remove Worm:Win32/Soltern.M?

Worm:Win32/Soltern.M removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment