Trojan

Trojan.Win32.Autoit.fmz information

Malware Removal

The Trojan.Win32.Autoit.fmz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Autoit.fmz virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid

How to determine Trojan.Win32.Autoit.fmz?


File Info:

name: C853B6E5EC3E0A01993A.mlw
path: /opt/CAPEv2/storage/binaries/edc37b1d4378036506544c97b974a6020e901b2a67cca303ddaa61420b60f58a
crc32: 77F9A9C1
md5: c853b6e5ec3e0a01993a960b9b83e01b
sha1: 211e02bcca48169fb7286bda412fd974b8ce3a35
sha256: edc37b1d4378036506544c97b974a6020e901b2a67cca303ddaa61420b60f58a
sha512: e121fefd028f43a2049fecb4504ef80b2f2450831a2ee08944f6810dae4c2d89306de7fce01d6abb0a1949bc056971667aaae5a255b2a1f3b63eca4a766ce00b
ssdeep: 24576:SAHnh+eWsN3skA4RV1Hom2KXMmHaooLLIz5:Vh+ZkldoPK8YaooLC
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E9158C0273D1C036FFABA2739B6AF60156BD79254123852F13981DB9BD701B2263E763
sha3_384: f052d582fad6abc25f33274af64dea65298660bc79318a0a223f1053859033a2328535c3d8273e3b9061588fa96fbfce
ep_bytes: e8c8d00000e97ffeffffcccccccccccc
timestamp: 2019-05-05 21:04:17

Version Info:

Translation: 0x0809 0x04b0

Trojan.Win32.Autoit.fmz also known as:

BkavW32.CsrjshAXY.Trojan
LionicHacktool.Win32.Gamehack.3!e
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.GenericKD.31945118
FireEyeGeneric.mg.c853b6e5ec3e0a01
CAT-QuickHealTrojan.Autoit
McAfeeArtemis!C853B6E5EC3E
CylanceUnsafe
SangforTrojan.Win32.Autoit.G
K7AntiVirusTrojan ( 0054d83f1 )
AlibabaTrojan:Win32/Obfuscated.5e36e5bf
K7GWTrojan ( 0054d83f1 )
Cybereasonmalicious.5ec3e0
VirITWorm.Win32.X-Aurun.CASZ
CyrenW32/AutoIt.VI.gen!Eldorado
SymantecTrojan.Gen.MBT
Elasticmalicious (moderate confidence)
ESET-NOD32multiple detections
Paloaltogeneric.ml
KasperskyTrojan.Win32.Autoit.fmz
BitDefenderTrojan.GenericKD.31945118
NANO-AntivirusTrojan.Win32.Crypt.fpwprz
TencentWin32.Trojan.Autoit.Syhn
Ad-AwareTrojan.GenericKD.31945118
ComodoMalware@#2wzvu1wdrcl1h
McAfee-GW-EditionBehavesLike.Win32.Generic.dh
SophosMal/Generic-S
APEXMalicious
GDataTrojan.GenericKD.31945118
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1245523
ArcabitTrojan.Generic.D1E7719E
ZoneAlarmTrojan.Win32.Autoit.fmz
MicrosoftTrojan:Win32/Occamy.CED
AhnLab-V3Trojan/Win32.Azden.C3209341
ALYacTrojan.GenericKD.31945118
VBA32Trojan.Autoit
IkarusTrojan.Win32.Obfuscated
FortinetAutoIt/Agent.OID!tr
PandaTrj/CI.A

How to remove Trojan.Win32.Autoit.fmz?

Trojan.Win32.Autoit.fmz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment