Malware

About “Generic.ShellCode.Marte.J.5DD0200D” infection

Malware Removal

The Generic.ShellCode.Marte.J.5DD0200D is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.ShellCode.Marte.J.5DD0200D virus can do?

  • Authenticode signature is invalid

How to determine Generic.ShellCode.Marte.J.5DD0200D?


File Info:

name: 4B274D6F58B1FD60D2C1.mlw
path: /opt/CAPEv2/storage/binaries/3195ef9636b132a41d83a353ed22f249988ad6eeff8377d5b9cc3d12ad2dba0d
crc32: 8CD7ABA7
md5: 4b274d6f58b1fd60d2c10f52568ae844
sha1: d9221b41659f1798faa2d9b4844c43fa54390e0b
sha256: 3195ef9636b132a41d83a353ed22f249988ad6eeff8377d5b9cc3d12ad2dba0d
sha512: 3224f873976c928d08d4b043723ed5c0b14e02ac594d05c9ec40e0bfa6d7ca3d71793e1ec55c1d0beb5d17def1ee49f0b60dc2882a09687b75d5e9c16e1e499b
ssdeep: 3072:2wR7GEBdGYy83UICHj9CGGBRZzFPk2I111KYTI1Uk1w:fLy83GD9KHMzTy1
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T175F3E5C1799C5285D9FC4FBF86B08261837FB8D79722E16E6BEEE00B1922B144501D9F
sha3_384: b90eed1ec60bab18a593f4c34a0dd4906ad9ac1e40479453cf9ec214d59c288dc86b0c8f934a26fcfcddc446cc5726df
ep_bytes: 8bec609ce95384000000000000000000
timestamp: 2016-01-14 19:26:45

Version Info:

CompanyName: Microsoft
FileDescription: Microsoft Windows Defender
FileVersion: 1.0.0.5
InternalName: msedefender.exe
LegalCopyright: Windows Copyright © Microsoft 2015
OriginalFilename: msedefender.exe
ProductName: Microsoft
ProductVersion: 1.0.0.5
Assembly Version: 1.0.0.5
Translation: 0x0000 0x04b0

Generic.ShellCode.Marte.J.5DD0200D also known as:

MicroWorld-eScanGeneric.ShellCode.Marte.J.5DD0200D
ClamAVWin.Trojan.CrimsonRAT-7591455-0
CylanceUnsafe
Cybereasonmalicious.1659f1
SymantecTrojan.Scarimson!gen1
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Agent.AHY
APEXMalicious
CynetMalicious (score: 99)
KasperskyHEUR:Trojan.Win32.Crimson.gen
BitDefenderGeneric.ShellCode.Marte.J.5DD0200D
AvastWin32:Evo-gen [Trj]
Ad-AwareGeneric.ShellCode.Marte.J.5DD0200D
EmsisoftGeneric.ShellCode.Marte.J.5DD0200D (B)
VIPREGeneric.ShellCode.Marte.J.5DD0200D
FireEyeGeneric.mg.4b274d6f58b1fd60
IkarusTrojan.MSIL.Agent
JiangminTrojan.Crimson.dp
AviraTR/Spy.Gen
MAXmalware (ai score=89)
Antiy-AVLTrojan[Ransom]/Win32.Foreign
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitGeneric.ShellCode.Marte.J.5DD0200D
ZoneAlarmHEUR:Trojan.Win32.Crimson.gen
GDataMSIL.Backdoor.Suloc.D
GoogleDetected
AhnLab-V3Trojan/Win.Crimson.C5312257
Acronissuspicious
MalwarebytesTrojan.Crypt.MSIL.Generic
RisingBackdoor.Crimson!1.CA75 (CLASSIC)
SentinelOneStatic AI – Malicious PE
FortinetW32/GenKryptik.GCTV!tr
BitDefenderThetaGen:NN.ZemsilF.34796.jm0@aC@gF@p
AVGWin32:Evo-gen [Trj]
CrowdStrikewin/malicious_confidence_90% (D)

How to remove Generic.ShellCode.Marte.J.5DD0200D?

Generic.ShellCode.Marte.J.5DD0200D removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment