Malware

Win32/Injector.Autoit.FER information

Malware Removal

The Win32/Injector.Autoit.FER is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.Autoit.FER virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Win32/Injector.Autoit.FER?


File Info:

crc32: 5376CA25
md5: 472da380650913284201c3c17c00104a
name: yyyyyyy.exe
sha1: 5d513052c455ce496a5f6060e49e421f18b88b93
sha256: bcab8973348053e43095a7d09927411208f43bce4fb04f0d829f2b616157a535
sha512: 8c1aa54a4aa47b3c5c6d824bfc5bfca9ec5742697ae3252fd21cc2dda1dfcc453a2d18052d6c02c907469231b75f882f12fafbbb75326f2b82ed54ca10fe1343
ssdeep: 24576:9Cdxte/80jYLT3U1jfsWatKKXdxKXp3zQ/YgzlZ1DIy1KDdqz0YNzLQ:Uw80cTsjkWatpd2p3EQKI0KDdS0YN4
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0809 0x04b0

Win32/Injector.Autoit.FER also known as:

MicroWorld-eScanTrojan.GenericKD.33581771
FireEyeGeneric.mg.472da38065091328
Qihoo-360Generic/Trojan.Script.ed4
McAfeeArtemis!472DA3806509
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Generic.4!e
K7AntiVirusTrojan ( 0056394e1 )
BitDefenderTrojan.GenericKD.33581771
K7GWTrojan ( 0056394e1 )
Cybereasonmalicious.2c455c
F-ProtW32/AutoIt.LU.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.Autoit.FER
APEXMalicious
AvastScript:SNH-gen [Trj]
GDataTrojan.GenericKD.33581771
KasperskyHEUR:Trojan.Script.Generic
AlibabaTrojan:Win32/Injector.ede03137
Endgamemalicious (high confidence)
SophosMal/Generic-S
F-SecureTrojan.TR/AD.MoksSteal.exho
DrWebTrojan.AutoIt.804
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.TrojanAitInject.tc
Trapminemalicious.moderate.ml.score
EmsisoftTrojan.GenericKD.33581771 (B)
IkarusTrojan.Autoit
CyrenW32/AutoIt.LU.gen!Eldorado
WebrootW32.Trojan.Script
AviraTR/AD.MoksSteal.exho
MAXmalware (ai score=82)
Antiy-AVLGrayWare/Autoit.BinToStr.a
MicrosoftTrojan:Win32/Tiggre!rfn
ArcabitTrojan.Generic.D2006ACB
ZoneAlarmHEUR:Trojan.Script.Generic
ALYacTrojan.GenericKD.33581771
MalwarebytesTrojan.Injector.AutoIt
TrendMicro-HouseCallTROJ_GEN.R03BH0CCV20
RisingTrojan.Obfus/Autoit!1.C075 (CLASSIC)
eGambitUnsafe.AI_Score_57%
FortinetAutoIt/Injector.FEE!tr
Ad-AwareTrojan.GenericKD.33581771
AVGScript:SNH-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_80% (W)

How to remove Win32/Injector.Autoit.FER?

Win32/Injector.Autoit.FER removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment