Malware

Generic.Exploit.Shellcode.1.D0CCF72D removal guide

Malware Removal

The Generic.Exploit.Shellcode.1.D0CCF72D is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Exploit.Shellcode.1.D0CCF72D virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Exploit.Shellcode.1.D0CCF72D?


File Info:

crc32: DDE30938
md5: 491735346926d59fb70a2162c44b3a20
name: hello.exe
sha1: 17a129d8a9c7d1c3b791fa5c617dfceff2096c0d
sha256: 2a565b3c92e17e0d03a5b087f151f923ac4b3b82189cff380bc33979c9d5eb26
sha512: b4b5f63cd2887adcd57692c13206b8ed00600505d53b424e478b5e0306a2b51c3d9910a49477fabb044b81f5f2150fa8a068b8bd4a88cb4337298c76828b3cc6
ssdeep: 12288:qJQfzH96QB0/ugTM6pssy1l4V0Kmx65DhwYaWqgWica:qGH96QBiTM6pDKK6+wYaWqg
type: PE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Generic.Exploit.Shellcode.1.D0CCF72D also known as:

BkavW32.AIDetectVM.malware2
MicroWorld-eScanGeneric.Exploit.Shellcode.1.D0CCF72D
FireEyeGeneric.mg.491735346926d59f
ALYacGeneric.Exploit.Shellcode.1.D0CCF72D
CylanceUnsafe
BitDefenderGeneric.Exploit.Shellcode.1.D0CCF72D
Cybereasonmalicious.46926d
BitDefenderThetaGen:NN.ZexaF.34132.94W@aCYnn8p
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.CobaltStrike-7913051-0
GDataGeneric.Exploit.Shellcode.1.D0CCF72D
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojan:Win32/Swrort.83f5591b
Ad-AwareGeneric.Exploit.Shellcode.1.D0CCF72D
EmsisoftGeneric.Exploit.Shellcode.1.D0CCF72D (B)
SophosMal/Zbot-FG
AviraTR/AD.Swrort.qhucd
MAXmalware (ai score=86)
ArcabitGeneric.Exploit.Shellcode.1.D0CCF72D
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojan:Win32/Swrort.A
CynetMalicious (score: 100)
McAfeeArtemis!491735346926
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002H01GA20
RisingHackTool.Swrort!1.6477 (CLOUD)
SentinelOneDFI – Suspicious PE
FortinetW32/Generic.FG!tr
AVGFileRepMetagen [Malware]
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Generic.Exploit.Shellcode.1.D0CCF72D?

Generic.Exploit.Shellcode.1.D0CCF72D removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment