Malware

What is “Win32/Injector.Autoit.FIE”?

Malware Removal

The Win32/Injector.Autoit.FIE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.Autoit.FIE virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Win32/Injector.Autoit.FIE?


File Info:

crc32: 888061DD
md5: 6db98f11ad363e11627e484bc196bd64
name: guy.exe
sha1: 68a524b2bb0fbe05354e012c8ba161670e1f62c9
sha256: e21c500c3b753dc375a7a57ddca50fb357e72a8264907302bd34a44307e28cfc
sha512: 3d3f7d79c74524cc91c7543db0eb6bf762821c33f660eccaa935de09251a49fe701505e462cf34c2ab008f688e899bf06c91024c94cdff9c63af9e7f8349b34a
ssdeep: 12288:mtb20Qc3lT7af41ePBRYuQLKpqeUhbTv5OFgNuPPpHSgaiTOB2nNWqHyBtUNMBa:mtb20pkaCqT5TBWgNQ7aCOUSxbT16A
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0809 0x04b0

Win32/Injector.Autoit.FIE also known as:

MicroWorld-eScanAIT.Acapulco.8.Gen
CAT-QuickHealBackdoor.Androm
McAfeeArtemis!6DB98F11AD36
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Multi.Generic.4!c
K7AntiVirusTrojan ( 005677831 )
BitDefenderAIT.Acapulco.8.Gen
K7GWTrojan ( 005677831 )
Invinceaheuristic
SymantecTrojan.Gen.2
APEXMalicious
AvastScript:SNH-gen [Trj]
GDataAIT.Acapulco.8.Gen
KasperskyBackdoor.Win32.Androm.uaqb
AlibabaBackdoor:Win32/Androm.03430589
ViRobotTrojan.Win32.Z.Acapulco.1139200
RisingTrojan.Obfus/Autoit!1.C045 (CLASSIC)
Endgamemalicious (high confidence)
EmsisoftAIT.Acapulco.8.Gen (B)
F-SecureTrojan.TR/AD.LokiBot.acir
DrWebTrojan.PWS.Stealer.23680
TrendMicroTROJ_GEN.R032C0DER20
FireEyeGeneric.mg.6db98f11ad363e11
SophosMal/Generic-S
CyrenW32/AutoIt.OM.gen!Eldorado
AviraTR/AD.LokiBot.acir
eGambitUnsafe.AI_Score_79%
MAXmalware (ai score=87)
Antiy-AVLGrayWare/Autoit.BinToStr.a
MicrosoftTrojan:Win32/Pwsteal.Q!bit
ArcabitAIT.Acapulco.8.Gen
ZoneAlarmBackdoor.Win32.Androm.uaqb
Acronissuspicious
ALYacAIT.Acapulco.8.Gen
VBA32Trojan.Pwsteal
MalwarebytesSpyware.LokiBot
PandaTrj/CI.A
ESET-NOD32a variant of Win32/Injector.Autoit.FIE
TrendMicro-HouseCallTROJ_GEN.R032C0DER20
TencentWin32.Backdoor.Fareit.Auto
IkarusTrojan.Autoit
MaxSecureTrojan.Malware.300983.susgen
FortinetAutoIt/Injector.FIC!tr
Ad-AwareAIT.Acapulco.8.Gen
AVGScript:SNH-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_70% (W)
Qihoo-360Generic/HEUR/QVM10.2.7CA0.Malware.Gen

How to remove Win32/Injector.Autoit.FIE?

Win32/Injector.Autoit.FIE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment