Malware

About “Win32/Injector.Autoit.FRG” infection

Malware Removal

The Win32/Injector.Autoit.FRG is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.Autoit.FRG virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Win32/Injector.Autoit.FRG?


File Info:

name: DB503A353D91862CC669.mlw
path: /opt/CAPEv2/storage/binaries/54be762a8d532a8d7341a43034ba4043f2ae8227908ca37d4371c4ea0f972d13
crc32: 7921127D
md5: db503a353d91862cc6691524e496d1f0
sha1: eeed483ad070fe814bdf20b80108ff82550ad4e4
sha256: 54be762a8d532a8d7341a43034ba4043f2ae8227908ca37d4371c4ea0f972d13
sha512: 242965e2e9acdfaa8d3a1644e293ad559d7268c109529acf826fef4ad0fc3c477c187b1bfd79d6be367f815353a5ce9c6c17eac5ef2416bc2d994ae521b4b43a
ssdeep: 24576:qqDEvCTbMWu7rQYlBQcBiT6rprG8a4NCeZdT2XZwbDXHpCzRjMe1:qTvC/MTQYxsWR7a0CeeGD5wjMe
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10665C00233D2C022FF9B92364B56F6155BBD6E260133E91F136839B9BE701B1177E662
sha3_384: 95241bf4af3a04dddbb23449bf0465abc3a217b119c6ad42637ea47156c2543b48f400208f0656442cd00b8a79c96e6d
ep_bytes: e86e050000e97afeffff558bec56ff75
timestamp: 2024-01-08 11:11:29

Version Info:

Translation: 0x0809 0x04b0

Win32/Injector.Autoit.FRG also known as:

BkavW32.AIDetectMalware
SkyhighBehavesLike.Win32.TrojanAitInject.tc
MalwarebytesMachineLearning/Anomalous.94%
BitDefenderThetaGen:NN.ZexaE.36680.yvW@a4SlQ!gi
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Injector.Autoit.FRG
APEXMalicious
KasperskyUDS:Trojan.Win32.Strab
AvastFileRepMalware [Pws]
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Script.awbz
GoogleDetected
Antiy-AVLTrojan[Downloader]/Win32.Agent.a
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ZoneAlarmUDS:Trojan.Win32.Strab
VBA32BScope.Trojan.Script
Cylanceunsafe
IkarusTrojan.Autoit
FortinetAutoIt/ShellcodeCrypter.GZFZ!tr
AVGFileRepMalware [Pws]
Cybereasonmalicious.ad070f
DeepInstinctMALICIOUS

How to remove Win32/Injector.Autoit.FRG?

Win32/Injector.Autoit.FRG removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment