Trojan

Should I remove “Trojan.Win32.Autoit.aza”?

Malware Removal

The Trojan.Win32.Autoit.aza is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Autoit.aza virus can do?

  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Uses Windows utilities for basic functionality
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Creates a slightly modified copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Win32.Autoit.aza?


File Info:

crc32: 1F582DA7
md5: 3ccf7c9404e5bb1bb958cdf72c61c633
name: 3CCF7C9404E5BB1BB958CDF72C61C633.mlw
sha1: 119d6acb2e91e75145dbf7949b1ec11b903542d6
sha256: 8e0773bbc7a62f368ccd1bb649da9c4b6d56b882f690a2c1894002ee2b05b6af
sha512: eab5ca4a5d081118e6b2655354a0e937401d2f2b703ebb21d7b1b09238803a33d64090be14caa3d1a6ba42fa3a7d458dbd19cd15d1800826d6d71c66121d8541
ssdeep: 12288:9hkDgouVA2nxKkorvdRgQriDwOIxmxiZnYQE7PJcbNyY3c2d:LRmJkcoQricOIQxiZY1WNyYs2d
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

CompiledScript: AutoIt v3 Script: 3, 3, 8, 1
FileVersion: 3, 3, 8, 1
FileDescription:
Translation: 0x0809 0x04b0

Trojan.Win32.Autoit.aza also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0055e3991 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader6.7475
CynetMalicious (score: 100)
CAT-QuickHealTrojan.AutoIt.Pistolar.A
ALYacTrojan.AutoIT.Agent.AAM
CylanceUnsafe
ZillyaTrojan.GenericTKA.Win32.270
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 0055e3991 )
Cybereasonmalicious.404e5b
BaiduAutoIt.Worm.Agent.a
CyrenW32/AutoIt.RT.gen!Eldorado
SymantecAUT.Heuristic!gen10
ESET-NOD32a variant of Win32/Autoit.OH
APEXMalicious
AvastAutoIt:Agent-DP [Trj]
ClamAVWin.Malware.Autoit-7535251-0
KasperskyTrojan.Win32.Autoit.aza
BitDefenderTrojan.AutoIT.Agent.AAM
MicroWorld-eScanTrojan.AutoIT.Agent.AAM
Ad-AwareTrojan.AutoIT.Agent.AAM
SophosML/PE-A + Troj/AutoIt-DAV
McAfee-GW-EditionBehavesLike.Win32.Yahlover.jh
FireEyeGeneric.mg.3ccf7c9404e5bb1b
EmsisoftTrojan.AutoIT.Agent.AAM (B)
JiangminTrojan.Autoit.ftqt
AviraHEUR/AGEN.1116008
eGambitUnsafe.AI_Score_58%
Antiy-AVLTrojan/Generic.ASCommon.1AE
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ArcabitTrojan.AutoIT.Agent.AAM
GDataTrojan.AutoIT.Agent.AAM (2x)
AhnLab-V3Trojan/Win32.AutoIt.R258728
Acronissuspicious
McAfeeTrojan-AitInject.B
MAXmalware (ai score=86)
VBA32Trojan.Autoit.Wirus
RisingDropper.Pistolar/Autoit!1.A603 (CLASSIC)
IkarusTrojan.Win32.Autoit
MaxSecureTrojan.Autoit.AZA
FortinetW32/Sohana.A!tr
AVGAutoIt:Agent-DP [Trj]

How to remove Trojan.Win32.Autoit.aza?

Trojan.Win32.Autoit.aza removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment