Malware

Win32/Injector.FZD removal tips

Malware Removal

The Win32/Injector.FZD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.FZD virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Dynamic (imported) function loading detected
  • Performs HTTP requests potentially not found in PCAP.
  • Authenticode signature is invalid
  • Attempts to modify proxy settings

How to determine Win32/Injector.FZD?


File Info:

name: CB25C19EED827BF855A7.mlw
path: /opt/CAPEv2/storage/binaries/cc5243e7e7b32aa2fad0f47a9cd549d11f0ee56aada49116633942a7bce24b33
crc32: 7C8BC5C0
md5: cb25c19eed827bf855a712d03b7ad6b7
sha1: ab96e6afd21ece66120183c0baa18496711c21c5
sha256: cc5243e7e7b32aa2fad0f47a9cd549d11f0ee56aada49116633942a7bce24b33
sha512: 4a6dc81a66db2e23f7832dc0a63d5d87cac6eddfc2b97bf39671718cb8480825f85694f00ae0445879cda0788fe69b9f2da5acdfa503080f36003cb1e0de4f9e
ssdeep: 1536:ULX1p0TA0A0QkJB1adQHmbdoeHdmKE7V/18VEpi9xqoR85ZJB1a:2Xv00L0PaddbqidmlIVbKoa5ba
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T168B3E92E7294D277E39287B14B3586A4016BBD740AA08E17A3C53D1C7777E738622F27
sha3_384: 043249a7c207c70d1409f71bbadf27f560648e7bec78e050b8afdb6c145afe4b5fce4ca4086b78d9d0fc9ffc97b12467
ep_bytes: 68d82a4000e8eeffffff000040000000
timestamp: 2022-03-04 13:19:12

Version Info:

Translation: 0x0409 0x04b0
Comments: TVauto
CompanyName: TVauto
ProductName: TVauto
FileVersion: 1.00.0159
ProductVersion: 1.00.0159
InternalName: TV
OriginalFilename: TV.exe

Win32/Injector.FZD also known as:

LionicWorm.Win32.VBNA.o!c
MicroWorld-eScanTrojan.GenericKD.39142501
FireEyeGeneric.mg.cb25c19eed827bf8
ALYacTrojan.GenericKD.39142501
CylanceUnsafe
SangforWorm.Win32.VBNA.ccim
K7AntiVirusTrojan ( 0000668d1 )
AlibabaWorm:Win32/Tiggre.4d5b1ac8
K7GWTrojan ( 0000668d1 )
CyrenW32/Agent.EFE.gen!Eldorado
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Injector.FZD
APEXMalicious
Paloaltogeneric.ml
KasperskyWorm.Win32.VBNA.ccim
BitDefenderTrojan.GenericKD.39142501
AvastWin32:WormX-gen [Wrm]
TencentWin32.Worm.Vbna.Syhp
Ad-AwareTrojan.GenericKD.39142501
SophosMal/Generic-S
TrendMicroTROJ_GEN.R002C0WC722
McAfee-GW-EditionRDN/Generic.com
Trapminesuspicious.low.ml.score
EmsisoftTrojan.GenericKD.39142501 (B)
GDataTrojan.GenericKD.39142501
AviraTR/Dropper.Gen
ArcabitTrojan.Generic.D2554465
ViRobotTrojan.Win32.Z.Wacatac.114688.EB
MicrosoftTrojan:Win32/Tiggre!rfn
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win.Generic.R476245
McAfeeRDN/Generic.com
MAXmalware (ai score=82)
VBA32Trojan.VB.Pedro
MalwarebytesSpyware.PasswordStealer
TrendMicro-HouseCallTROJ_GEN.R002C0WC722
RisingWorm.VBNA!8.2BE (CLOUD)
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/FZD!tr
AVGWin32:WormX-gen [Wrm]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Win32/Injector.FZD?

Win32/Injector.FZD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment