Malware

Generic.Exploit.Shellcode.RDI.3.49AF6535 removal guide

Malware Removal

The Generic.Exploit.Shellcode.RDI.3.49AF6535 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Exploit.Shellcode.RDI.3.49AF6535 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Generic.Exploit.Shellcode.RDI.3.49AF6535?


File Info:

name: B10C74606F3859B11945.mlw
path: /opt/CAPEv2/storage/binaries/d70d7e8b93860e19a506fd607bf4bbacab599bae6360d8cf683d111027608194
crc32: 791BE9B7
md5: b10c74606f3859b119451a8ffb56c1b1
sha1: e50fa0729b9b99b54b30a9919262b36d4290adae
sha256: d70d7e8b93860e19a506fd607bf4bbacab599bae6360d8cf683d111027608194
sha512: 87c65ab63cda0349423e1c7b4c6b697e4d96756aa456cc8026927a306896b523c0420730c912999b258848b842e1284024e7a476405b437b990907806d39e10c
ssdeep: 768:302yJlBkkZISEMYevUBpJSY3WiLiFuDoY/OlUA2XxXhkRv4lMUshJ:302yjfE7e8zL3xLiFMoY/OlUAM7lMR
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T1F4F24C86E9A554E5DE3AE03EC5625626E5F1B86C17029BCF0334C8A95F237E0263F346
sha3_384: e0d0773cbf2f6c7bd8368eb03bfef938e2142b27fbfa8f7e475f4b9841f6d2980e212e90b5b31fd727a41061bcea8b9c
ep_bytes: 48895c2408574883ec20488bda488bf9
timestamp: 2021-08-29 15:55:21

Version Info:

0: [No Data]

Generic.Exploit.Shellcode.RDI.3.49AF6535 also known as:

MicroWorld-eScanGeneric.Exploit.Shellcode.RDI.3.49AF6535
FireEyeGeneric.Exploit.Shellcode.RDI.3.49AF6535
Cybereasonmalicious.06f385
ESET-NOD32Win64/Rootkit.Agent.BB
APEXMalicious
KasperskyHEUR:Trojan.Win64.MalDrv.gen
BitDefenderGeneric.Exploit.Shellcode.RDI.3.49AF6535
Ad-AwareGeneric.Exploit.Shellcode.RDI.3.49AF6535
SophosMal/Rootkit-BC
EmsisoftGeneric.Exploit.Shellcode.RDI.3.49AF6535 (B)
GDataGeneric.Exploit.Shellcode.RDI.3.49AF6535
JiangminRootkit.Agent.shk
Antiy-AVLTrojan/Generic.ASMalwS.347B847
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
ALYacGeneric.Exploit.Shellcode.RDI.3.49AF6535
MAXmalware (ai score=83)
MalwarebytesMalware.AI.386245823
YandexTrojan.MalDrv!M2vYeUCqpe8
IkarusTrojan.Win64.Rootkit
FortinetW64/RootKitAgent.BB!tr

How to remove Generic.Exploit.Shellcode.RDI.3.49AF6535?

Generic.Exploit.Shellcode.RDI.3.49AF6535 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment