Malware

How to remove “Win32/Injector.Autoit.FDA”?

Malware Removal

The Win32/Injector.Autoit.FDA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.Autoit.FDA virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Win32/Injector.Autoit.FDA?


File Info:

crc32: 0710B492
md5: f029f8b0d94fd87129fa22ad6bcf79a0
name: svch.exe
sha1: 54f7c6bd2fc83d79674bfcf948dd91e97caf6884
sha256: 597035c144e508081ef4945be85e9ee0583b336e5ebddc6e54a8183b34c391f0
sha512: c7206d8d81965298736c91c47a564893dec1a1566280073383604a7f31b3874f711766fa643cf2bc483691596cb16fc1da034f67432b118c15ae6d1617b08a70
ssdeep: 24576:4u6J33O0c+JY5UZ+XC0kGso6FasR9aiuGThNBKkx3XJAmhWY:yu0c++OCvkGs9FaseYDBKI3ZeY
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0809 0x04b0

Win32/Injector.Autoit.FDA also known as:

MicroWorld-eScanTrojan.AutoIT.Agent.AAJ
FireEyeGeneric.mg.f029f8b0d94fd871
Qihoo-360HEUR/QVM10.1.8DB2.Malware.Gen
McAfeeTrojan-AitInject.aq
BitDefenderTrojan.AutoIT.Agent.AAJ
Cybereasonmalicious.d2fc83
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.Autoit.FDA
GDataTrojan.AutoIT.Agent.AAJ
KasperskyUDS:DangerousObject.Multi.Generic
EmsisoftTrojan.AutoIT.Agent.AAJ (B)
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Downloader.tc
Trapminemalicious.high.ml.score
APEXMalicious
Endgamemalicious (high confidence)
ArcabitTrojan.AutoIT.Agent.AAJ
AhnLab-V3Trojan/AU3.Wacatac.S1079
ZoneAlarmUDS:DangerousObject.Multi.Generic
MicrosoftTrojan:Win32/Wacatac.D!ml
MAXmalware (ai score=81)
MalwarebytesTrojan.MalPack.AutoIt
RisingTrojan.Obfus/Autoit!1.C045 (CLASSIC)
IkarusTrojan-Spy.Keylogger.AgentTesla
FortinetAutoIt/Injector.EXF!tr
MaxSecureTrojan.Malware.300983.susgen

How to remove Win32/Injector.Autoit.FDA?

Win32/Injector.Autoit.FDA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment