Malware

Generic.ProcGMar.26D412B3 removal

Malware Removal

The Generic.ProcGMar.26D412B3 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.ProcGMar.26D412B3 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Generic.ProcGMar.26D412B3?


File Info:

name: 053891A7AC3D579F75EB.mlw
path: /opt/CAPEv2/storage/binaries/09523d457ddf17b514ce0be98b92d5e398a93c7e2d41c6887df66a7a019815d3
crc32: 7541B18D
md5: 053891a7ac3d579f75eb106a58e6d350
sha1: 720c8e3c2f722a6d955cda5cb40ee3b936b001a6
sha256: 09523d457ddf17b514ce0be98b92d5e398a93c7e2d41c6887df66a7a019815d3
sha512: 70f5563897d3c2002b8fc27de86b59aa79ad2699295e05a39e4ffc79878ea36e722ae27a33cb50027d3acbf3bebf88f2bbc67090a3674bccf63b7b37e619fb46
ssdeep: 12288:9cRAVzv3aGXp5gcWNR9aEgZhNV/A/F9R15j3FeTGV+rYWmAJuTFfLV5GT3wn0TdI:/9v3/Ccm99gBO/F9R15j3yYWmAJuTFfX
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C5F48E23F3914533D1732A798C5B93A96839BF213E38AD8A3BE41D4C5F3968139252D7
sha3_384: 445570d87134f57fffd96ce94f706a90d977e651e7f5b631ff84ca4426dea41b42b60450fd17742cccb412364c7e7238
ep_bytes: 558bec83c4f0535657b8c0464900e8b1
timestamp: 2009-09-18 09:19:27

Version Info:

0: [No Data]

Generic.ProcGMar.26D412B3 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.ProcGMar.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.ProcGMar.26D412B3
ClamAVWin.Trojan.Agent-482522
FireEyeGeneric.mg.053891a7ac3d579f
CAT-QuickHealTrojan.Agent
ALYacGeneric.ProcGMar.26D412B3
Cylanceunsafe
ZillyaDropper.Agent.Win32.36031
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 00261e0a1 )
AlibabaTrojan:Win32/Iyeclore.f3d68980
K7GWTrojan ( 00261e0a1 )
Cybereasonmalicious.7ac3d5
BitDefenderThetaAI:Packer.4A8889DA19
VirITTrojan.Win32.Agent.WCC
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Iyeclore.J
APEXMalicious
CynetMalicious (score: 99)
BitDefenderGeneric.ProcGMar.26D412B3
NANO-AntivirusTrojan.Win32.Agent.bpbgku
AvastWin32:Delf-NZU [Trj]
TencentMalware.Win32.Gencirc.10b614c9
EmsisoftGeneric.ProcGMar.26D412B3 (B)
F-SecureHeuristic.HEUR/AGEN.1326002
DrWebTrojan.PWS.Gamania.28441
VIPREGeneric.ProcGMar.26D412B3
TrendMicroTROJ_GEN.R002C0OHQ23
McAfee-GW-EditionBehavesLike.Win32.Infected.bh
Trapminemalicious.moderate.ml.score
SophosMal/DelpDl-A
GDataGeneric.ProcGMar.26D412B3
JiangminTrojanDropper.Agent.aqey
WebrootW32.Trojan.Dropper!daw
AviraHEUR/AGEN.1326002
Antiy-AVLTrojan[Dropper]/Win32.Agent
XcitiumMalware@#13d8t9fps74bx
ArcabitGeneric.ProcGMar.26D412B3
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3Trojan/Win32.Gen
McAfeeGeneric.bor
MAXmalware (ai score=83)
VBA32TScope.Trojan.Delf
MalwarebytesIyeclore.Trojan.Clicker.DDS
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0OHQ23
RisingTrojan.Generic@AI.100 (RDMK:T6lrzFsT33aZwKk8Ib459Q)
YandexTrojan.GenAsa!8vXHY3C1zKY
IkarusTrojan-Dropper.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Iyeclore.OAG!tr
AVGWin32:Delf-NZU [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Generic.ProcGMar.26D412B3?

Generic.ProcGMar.26D412B3 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment