Trojan

Trojan:Win32/AutoitInject!pz information

Malware Removal

The Trojan:Win32/AutoitInject!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/AutoitInject!pz virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Trojan:Win32/AutoitInject!pz?


File Info:

name: 5A201C26FFF6606609DB.mlw
path: /opt/CAPEv2/storage/binaries/16f0cd82fa3b3747497bd97d0f8ec6ca13c845190951b7e615059beed162661d
crc32: ED7FBE5A
md5: 5a201c26fff6606609dbed520d0e967a
sha1: 75dabd3f2d8e7e00171e22b22d6a6774bc1c4d6d
sha256: 16f0cd82fa3b3747497bd97d0f8ec6ca13c845190951b7e615059beed162661d
sha512: b70fd1b83a0acbba482bf7a1d4a554db1152d3cd73c4d061e3f82dd53f360e84ef9cb0724587fc1d7a3595e55e35d5540c2674a4da34dac47778144814e54c99
ssdeep: 24576:AAHnh+eWsN3skA4RV1Hom2KXcutcgzHzhn:3h+ZkldoPKsicuHzd
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E4257B0273919026FFAF92739B5AA20156B879253123CD3F13981D79BD701B12E3E66F
sha3_384: 125d70739eea47e5645b46c67de9fc82fbb17919b99c80617f2acd21f0629930463f3e606639fbaaec49fc7241259b4a
ep_bytes: e8c8d00000e97ffeffffcccccccccccc
timestamp: 2019-05-06 03:25:42

Version Info:

Translation: 0x0809 0x04b0

Trojan:Win32/AutoitInject!pz also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Heur.AutoIT.12
ClamAVWin.Malware.Autoit-6970105-1
SkyhighBehavesLike.Win32.Injector.dh
McAfeeTrojan-AitInject.aq
MalwarebytesGeneric.Malware.AI.DDS
VIPREGen:Trojan.Heur.AutoIT.12
SangforVirus.Win32.Save.a
K7AntiVirusTrojan ( 0055dc781 )
K7GWTrojan ( 0055dc781 )
Cybereasonmalicious.f2d8e7
SymantecAUT.Heuristic!gen5
tehtrisGeneric.Malware
ESET-NOD32Win32/Packed.Autoit.NBB suspicious
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Script.SAgent.gen
BitDefenderGen:Trojan.Heur.AutoIT.12
AvastAutoIt:Dropper-DL [Trj]
EmsisoftGen:Trojan.Heur.AutoIT.12 (B)
F-SecureHeuristic.HEUR/AGEN.1320235
DrWebTrojan.DownLoader28.5039
TrendMicroBackdoor.Autoit.NANOCORE.SMAT.hp
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.5a201c26fff66066
SophosTroj/AutoIt-CLG
SentinelOneStatic AI – Malicious PE
GDataGen:Trojan.Heur.AutoIT.12
WebrootW32.Trojan.Gen
GoogleDetected
AviraHEUR/AGEN.1320235
MAXmalware (ai score=89)
Antiy-AVLTrojan[Packed]/Win32.Autoit
Kingsoftmalware.kb.a.1000
ArcabitTrojan.Heur.AutoIT.12
ZoneAlarmHEUR:Trojan.Script.SAgent.gen
MicrosoftTrojan:Win32/AutoitInject!pz
VaristW32/AutoIt.LD.gen!Eldorado
AhnLab-V3Win-Trojan/AutoInj.Exp
BitDefenderThetaAI:Packer.39DE3CF819
ALYacGen:Trojan.Heur.AutoIT.12
VBA32Backdoor.Androm
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallBackdoor.Autoit.NANOCORE.SMAT.hp
RisingPUF.Pack-AutoIt!1.B8E7 (CLASSIC)
IkarusTrojan.Autoit
MaxSecureTrojan.Malware.300983.susgen
FortinetAutoIt/Injector.DUY!tr
AVGAutoIt:Dropper-DL [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Trojan:Win32/AutoitInject!pz?

Trojan:Win32/AutoitInject!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment