Malware

Win32/Injector.Autoit.FCI removal guide

Malware Removal

The Win32/Injector.Autoit.FCI is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.Autoit.FCI virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Win32/Injector.Autoit.FCI?


File Info:

crc32: 0BE9E253
md5: bcf252bdff29159c7c15233718df745d
name: regasm.exe
sha1: 20a382a1290377255239782dbb107c552c33f3e8
sha256: 25040c35d20171f24a057fa11719af5fe9d65333a5ada111af8ff45e17df5934
sha512: b36ae019a56236370d0ad583a7cd4912f3fca49b3fdb6461f718ed5c9912f68410671573daa6ceec500f4754fcc3379f26057742b9675b4b8907287d483b6d46
ssdeep: 24576:Wu6J33O0c+JY5UZ+XC0kGso6FaYg5N//eZwvZ3YfyLs0RZQCWY:4u0c++OCvkGs9FaYGRvZ3VLvngY
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0809 0x04b0

Win32/Injector.Autoit.FCI also known as:

MicroWorld-eScanTrojan.AutoIT.Agent.AAJ
FireEyeGeneric.mg.bcf252bdff29159c
McAfeeArtemis!BCF252BDFF29
CylanceUnsafe
CrowdStrikewin/malicious_confidence_90% (W)
BitDefenderTrojan.AutoIT.Agent.AAJ
K7GWTrojan ( 00560ee11 )
APEXMalicious
GDataTrojan.AutoIT.Agent.AAJ
KasperskyTrojan.Win32.Inject.amslu
AlibabaTrojan:Win32/autoit.ali2000008
AegisLabTrojan.Win32.AutoIT.4!c
Endgamemalicious (high confidence)
EmsisoftTrojan.AutoIT.Agent.AAJ (B)
F-SecureTrojan.TR/Autoit.vscbr
DrWebTrojan.DownLoader16.20190
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Downloader.tc
MaxSecureTrojan.Malware.300983.susgen
Trapminemalicious.high.ml.score
SophosMal/Generic-S
IkarusTrojan.Autoit
AviraTR/Autoit.vscbr
MAXmalware (ai score=83)
ArcabitTrojan.AutoIT.Agent.AAJ
ZoneAlarmTrojan.Win32.Inject.amslu
MicrosoftTrojan:Win32/Occamy.C
AhnLab-V3Trojan/AU3.Wacatac.S1079
Acronissuspicious
MalwarebytesTrojan.MalPack.AutoIt
ESET-NOD32a variant of Win32/Injector.Autoit.FCI
FortinetAutoIt/Injector.EXF!tr
Paloaltogeneric.ml
Qihoo-360HEUR/QVM10.1.5E61.Malware.Gen

How to remove Win32/Injector.Autoit.FCI?

Win32/Injector.Autoit.FCI removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment