Malware

Generic.Exploit.Shellcode.1.EA0C58D8 (file analysis)

Malware Removal

The Generic.Exploit.Shellcode.1.EA0C58D8 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Exploit.Shellcode.1.EA0C58D8 virus can do?

  • Network activity detected but not expressed in API logs

How to determine Generic.Exploit.Shellcode.1.EA0C58D8?


File Info:

crc32: 7463E6A4
md5: 76321c334e239628a09b0bae4120c545
name: 76321C334E239628A09B0BAE4120C545.mlw
sha1: 49b9a6fd7da6835828e445d3911a4e8d93c6d00e
sha256: 58685f0da059e77a5f7e4cbe185fd81f30363ad793d3eef519296eaa5ae8d5ac
sha512: 1a9c7c8e641a4821b6cfb52a37735ba0c36a81f47d6012cf684626afcbf37c54831e52497b5798e16a52d456c0fde6454d4ec6285b673d1293014cc4c67dc50e
ssdeep: 12288:DqX9PxG0OKdVlU6eR8tuzWwZ1Vlra4KN0meVSD7vZ9XU9/l1K8:OX9BOK5U6eR8bwZXlSN0fSDL
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Generic.Exploit.Shellcode.1.EA0C58D8 also known as:

K7AntiVirusUnwanted-Program ( 0055a1ba1 )
Elasticmalicious (high confidence)
DrWebPowerShell.DownLoader.36
CynetMalicious (score: 100)
ALYacGeneric.Exploit.Shellcode.1.EA0C58D8
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Swrort.2b52c728
K7GWUnwanted-Program ( 0055a1ba1 )
Cybereasonmalicious.34e239
CyrenW32/Trojan.CZU.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Rozena.AWI
APEXMalicious
AvastWin32:Agent-BCPE [Trj]
ClamAVWin.Malware.Liev-9646109-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.Exploit.Shellcode.1.EA0C58D8
NANO-AntivirusTrojan.Win32.Agent.epzjti
MicroWorld-eScanGeneric.Exploit.Shellcode.1.EA0C58D8
Ad-AwareGeneric.Exploit.Shellcode.1.EA0C58D8
SophosML/PE-A + ATK/Veil-AZ
BitDefenderThetaAI:Packer.93967E671E
McAfee-GW-EditionBehavesLike.Win32.Downloader.dh
FireEyeGeneric.mg.76321c334e239628
EmsisoftGeneric.Exploit.Shellcode.1.EA0C58D8 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Generic.bapet
AviraHEUR/AGEN.1117034
MicrosoftTrojan:Win32/Swrort.A
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGeneric.Exploit.Shellcode.1.EA0C58D8
AhnLab-V3Trojan/RL.Generic.R243970
McAfeeTrojan-Veil-FLRK!76321C334E23
MAXmalware (ai score=83)
VBA32Trojan.Swrort
MalwarebytesMalware.AI.1168553086
RisingHackTool.Swrort!1.6477 (CLOUD)
IkarusTrojan.Win32.Leivion
FortinetW32/Rozena.AWI!tr
AVGWin32:Agent-BCPE [Trj]
Paloaltogeneric.ml

How to remove Generic.Exploit.Shellcode.1.EA0C58D8?

Generic.Exploit.Shellcode.1.EA0C58D8 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment