Malware

About “Generic.Exploit.Shellcode.3.48F5597D” infection

Malware Removal

The Generic.Exploit.Shellcode.3.48F5597D is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Exploit.Shellcode.3.48F5597D virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Exploit.Shellcode.3.48F5597D?


File Info:

crc32: B70AA682
md5: 973e5202304f15ac6d86fa764d0d2801
name: 973E5202304F15AC6D86FA764D0D2801.mlw
sha1: a5db5d5751b5c897d2fc1e803ecf166c3ca08870
sha256: 61ce06d509267bde4bc4f34d9d1b0525bcea8b04cb4a85bbcbdf211933152671
sha512: 2818e12671c6b63ddb79b5f30a8c16ce8c2394cd345b482034619fa7b47652865bea3d404b237983e4663700bfd4f55459064b8d6575beaa6478d78a0813c383
ssdeep: 48:19arZFLBoGHQfdD2WA3ruzS6o8BYtdeo4TN94rMOVSfBK3MWjAupQ:1mt4VD5TBOdOTNNOVjc+5Q
type: MS-DOS executable, MZ for MS-DOS

Version Info:

0: [No Data]

Generic.Exploit.Shellcode.3.48F5597D also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00121dea1 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacDeepScan:Generic.Exploit.Shellcode.3.48F5597D
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 00121dea1 )
Cybereasonmalicious.2304f1
CyrenW32/Rozena.AH.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Rozena.ED
APEXMalicious
AvastWin32:CrypterX-gen [Trj]
KasperskyUDS:Trojan.Win32.Generic
BitDefenderDeepScan:Generic.Exploit.Shellcode.3.48F5597D
MicroWorld-eScanDeepScan:Generic.Exploit.Shellcode.3.48F5597D
Ad-AwareDeepScan:Generic.Exploit.Shellcode.3.48F5597D
SophosML/PE-A + ATK/Swrort-BE
F-SecureTrojan.TR/Crypt.XPACK.Gen
BitDefenderThetaGen:NN.ZexaF.34684.amW@aWGDyFp
McAfee-GW-EditionGenericRXGU-VO!973E5202304F
FireEyeGeneric.mg.973e5202304f15ac
EmsisoftDeepScan:Generic.Exploit.Shellcode.3.48F5597D (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Malware.Gen
AviraTR/Crypt.XPACK.Gen
MicrosoftTrojan:Win32/Meterpreter.P
ArcabitDeepScan:Generic.Exploit.Shellcode.3.48F5597D
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataDeepScan:Generic.Exploit.Shellcode.3.48F5597D
AhnLab-V3Malware/Win32.RL_Generic.R277069
Acronissuspicious
McAfeeGenericRXGU-VO!973E5202304F
MAXmalware (ai score=83)
VBA32BScope.Trojan.Cometer
MalwarebytesTrojan.Rozena
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R066C0DDR21
RisingTrojan.Rozena!8.6D (TFE:dGZlOgLeju10r1yZkA)
YandexTrojan.GenAsa!RuXWX5C6OxI
IkarusTrojan.Win32.Rozena
FortinetW32/Rozena.ABC!tr
AVGWin32:CrypterX-gen [Trj]
Paloaltogeneric.ml

How to remove Generic.Exploit.Shellcode.3.48F5597D?

Generic.Exploit.Shellcode.3.48F5597D removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment