Malware

About “Generic.ShellCode.Marte.H.DDF63068” infection

Malware Removal

The Generic.ShellCode.Marte.H.DDF63068 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.ShellCode.Marte.H.DDF63068 virus can do?

  • Sample contains Overlay data
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.ShellCode.Marte.H.DDF63068?


File Info:

name: 7AFC390C01779237C31D.mlw
path: /opt/CAPEv2/storage/binaries/302faf19fe40666f00e702596e85dff4286033b1d57fbb71a93209ba9117639f
crc32: 70FC1B67
md5: 7afc390c01779237c31d8af284cb8cd2
sha1: efd8052ed82a578296e5789437c540567143d9e5
sha256: 302faf19fe40666f00e702596e85dff4286033b1d57fbb71a93209ba9117639f
sha512: 1c5881a76408c50eb02c6268647f688c61a203a3a4918039610c845132cfe7347595cb834f54d5461a75c398917d3929038d525422901743cf046411e3ec316e
ssdeep: 1536:CmaenuuJwnvZITdruGpPO5rQHdH1a/sJNvao7PkXW:AeDptpWCHlTNbPF
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1D0A31896ABD5AD63DA45063E98F68309233DF6C41B838B271E30A53A0F536D0BEC6547
sha3_384: 183293f05762dddb9cc55c1258b5e428760ba719dea8fa786ee5ac313744c2a5b83c55bc59f75bcf15455d8126e3dcec
ep_bytes: 493f414b9b4a40984092939bf9439841
timestamp: 2022-06-26 21:35:37

Version Info:

0: [No Data]

Generic.ShellCode.Marte.H.DDF63068 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.lB6l
DrWebPowerShell.DownLoader.36
MicroWorld-eScanGeneric.ShellCode.Marte.H.DDF63068
ClamAVWin.Trojan.MSShellcode-7
FireEyeGeneric.mg.7afc390c01779237
SkyhighBehavesLike.Win32.Generic.cm
ALYacGeneric.ShellCode.Marte.H.DDF63068
Cylanceunsafe
SangforHackTool.Win32.Reverse_Bin_v2_5_through_v4_x.uwccg
K7AntiVirusTrojan ( 001172b51 )
AlibabaTrojan:Win32/CobaltStrike.5c89
K7GWTrojan ( 001172b51 )
CrowdStrikewin/malicious_confidence_100% (W)
ArcabitGeneric.ShellCode.Marte.H.DDFDF65C
BitDefenderThetaGen:NN.ZexaF.36680.g8Y@aW2qYKe
SymantecTrojan Horse
ESET-NOD32a variant of Generik.HQKLYGH
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.ShellCode.Marte.H.DDF63068
NANO-AntivirusTrojan.Win32.Shellcode.ewfvwj
AvastWin32:SwPatch [Wrm]
TencentMalware.Win32.Gencirc.10bddeda
EmsisoftGeneric.ShellCode.Marte.H.DDF63068 (B)
F-SecureTrojan.TR/Patched.Gen2
VIPREGeneric.ShellCode.Marte.H.DDF63068
TrendMicroBackdoor.Win32.COBEACON.SMJMAC
SophosMal/EncPk-ACE
SentinelOneStatic AI – Malicious PE
GoogleDetected
AviraTR/Patched.Gen2
Antiy-AVLTrojan/Win32.Rozena.ed
Kingsoftmalware.kb.a.903
XcitiumTrojWare.Win32.Rozena.A@4jwdqr
MicrosoftTrojan:Win32/Swrort.A
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataWin32.Trojan.PSE.16SUL61
VaristW32/Swrort.B.gen!Eldorado
AhnLab-V3Trojan/Win.Generic.R492713
McAfeeRDN/Generic.hra
MAXmalware (ai score=82)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallMal_Mlwr-13
RisingHackTool.Swrort!1.6477 (CLASSIC)
IkarusTrojan.Win32.Rozena
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/Swrort.C!tr
AVGWin32:SwPatch [Wrm]
DeepInstinctMALICIOUS

How to remove Generic.ShellCode.Marte.H.DDF63068?

Generic.ShellCode.Marte.H.DDF63068 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment