Malware

AIT.Heur.Cottonmouth.8.78F19BD7.Gen removal

Malware Removal

The AIT.Heur.Cottonmouth.8.78F19BD7.Gen is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AIT.Heur.Cottonmouth.8.78F19BD7.Gen virus can do?

  • Attempts to connect to a dead IP:Port (2 unique times)
  • Performs some HTTP requests
  • Creates a hidden or system file
  • Attempts to modify proxy settings

Related domains:

iplogger.com
apps.identrust.com
isrg.trustid.ocsp.identrust.com
crl.identrust.com
ocsp.int-x3.letsencrypt.org

How to determine AIT.Heur.Cottonmouth.8.78F19BD7.Gen?


File Info:

crc32: 3726D781
md5: 44c007c4b3596626b27c7a1e6b5b4d1c
name: 44C007C4B3596626B27C7A1E6B5B4D1C.mlw
sha1: c4e9098f51df0aa1bc68bb97a71967191eb1951b
sha256: b42b33ffa4b45bc81b71f13d89dc1283b155204913aa8362e99e9aa44366bfb2
sha512: b882a953f06e15d7467fcd7a3e654590d6eb8a57e579b4fbe1942a164a75e72b8c921f8f3107d4160f500aed111e218179bba9d629d6632b03d5e6ec7d23f9c2
ssdeep: 24576:IAHnh+eWsN3skA4RV1Hom2KXMmHa/Xn94Y5:Ph+ZkldoPK8Ya/XZ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0809 0x04b0

AIT.Heur.Cottonmouth.8.78F19BD7.Gen also known as:

BkavW32.AIDetectVM.malware1
MicroWorld-eScanAIT.Heur.Cottonmouth.8.78F19BD7.Gen
Qihoo-360HEUR/QVM10.1.C358.Malware.Gen
McAfeeArtemis!44C007C4B359
CylanceUnsafe
SangforMalware
BitDefenderAIT.Heur.Cottonmouth.8.78F19BD7.Gen
CyrenW32/AutoIt.IM.gen!Eldorado
APEXMalicious
KasperskyUDS:DangerousObject.Multi.Generic
Ad-AwareAIT.Heur.Cottonmouth.8.78F19BD7.Gen
EmsisoftAIT.Heur.Cottonmouth.8.78F19BD7.Gen (B)
F-SecureHeuristic.HEUR/AGEN.1138907
McAfee-GW-EditionBehavesLike.Win32.TrojanAitInject.dh
FireEyeGeneric.mg.44c007c4b3596626
SophosML/PE-A
IkarusTrojan-Downloader.Win32.AutoIt
AviraHEUR/AGEN.1138907
MAXmalware (ai score=83)
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitAIT.Heur.Cottonmouth.8.78F19BD7.Gen
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataAIT.Heur.Cottonmouth.8.78F19BD7.Gen (2x)
CynetMalicious (score: 100)
ESET-NOD32a variant of Win32/TrojanDownloader.Autoit.OIY
eGambitUnsafe.AI_Score_95%
FortinetW32/Autoit.OJP!tr
AVGFileRepMalware
Cybereasonmalicious.f51df0
MaxSecureTrojan.Malware.300983.susgen

How to remove AIT.Heur.Cottonmouth.8.78F19BD7.Gen?

AIT.Heur.Cottonmouth.8.78F19BD7.Gen removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment