Malware

How to remove “Generic.ShellCode.Marte.J.A3C59B69”?

Malware Removal

The Generic.ShellCode.Marte.J.A3C59B69 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.ShellCode.Marte.J.A3C59B69 virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.ShellCode.Marte.J.A3C59B69?


File Info:

name: 5AA02D17B649361AB662.mlw
path: /opt/CAPEv2/storage/binaries/c026de219139d4dfde2db4f00ab6594d439b11dbf60f04986b4b571335496619
crc32: C6E535D9
md5: 5aa02d17b649361ab66242b1fec7aa39
sha1: 1035ef21986cd0752d4a1a80c0dfc4c4be08a872
sha256: c026de219139d4dfde2db4f00ab6594d439b11dbf60f04986b4b571335496619
sha512: 56fbfafb6a56f7ae3d3c4e8e0eb239972114178858a4ef82a5eb5486f0420876afd9b1382d12da95110fcfbe6555a901034ffb5bcb49ea1cf7f5ee4a38707ef0
ssdeep: 24576:ku6JxXO0c+JY5UZ+XC0kGso/WaeIWlMcp8+6CPsu6s/oaOjQkIWY:es0c++OCvkGsUWa53DY
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15875D192A3DD82E1CE1666B3BE1437826F3B583146F074163F992D6C9E63071712DBA3
sha3_384: 7a07e6f50f8d86c1bc062b7c419ada022b34bc310cb6dba52c527354bdb47bab4443496612cb4fca5901c1aeac81a737
ep_bytes: 8bec609ce95aad0900ffcccccccccccc
timestamp: 2019-11-13 07:03:11

Version Info:

Translation: 0x0809 0x04b0

Generic.ShellCode.Marte.J.A3C59B69 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.ShellCode.Marte.J.A3C59B69
ALYacGeneric.ShellCode.Marte.J.A3C59B69
CylanceUnsafe
VIPREGeneric.ShellCode.Marte.J.A3C59B69
SangforVirus.Win32.Save.a
Cybereasonmalicious.7b6493
VirITTrojan.Win32.PWSStealer.CTNN
SymantecPacked.Generic.548
ESET-NOD32a variant of Win32/Packed.AutoIt.PC
APEXMalicious
ClamAVWin.Malware.Nymeria-9979346-0
KasperskyTrojan.Script.Obit.gen
BitDefenderGeneric.ShellCode.Marte.J.A3C59B69
NANO-AntivirusVirus.Win32.Gen.ccmw
AvastAutoIt:Injector-JV [Trj]
Ad-AwareGeneric.ShellCode.Marte.J.A3C59B69
EmsisoftGeneric.ShellCode.Marte.J.A3C59B69 (B)
DrWebTrojan.AutoIt.630
McAfee-GW-EditionBehavesLike.Win32.TrojanAitInject.th
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.5aa02d17b649361a
SophosML/PE-A
IkarusTrojan-Spy.Agent
GoogleDetected
AviraTR/Crypt.XPACK.Gen
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitGeneric.ShellCode.Marte.J.A3C59B69
ZoneAlarmVHO:Trojan.Win32.AutoItScript.gen
GDataGeneric.ShellCode.Marte.J.A3C59B69
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Autoinj03.Exp
Acronissuspicious
McAfeeGeneric Obfuscated.g
MAXmalware (ai score=87)
VBA32Heur.Trojan.Hlux
MalwarebytesTrojan.MalPack.AutoIt
RisingTrojan.Obfus/Autoit!1.BD7E (CLASSIC)
MaxSecureTrojan.Malware.300983.susgen
FortinetAutoIt/Agent.AAJ!tr
BitDefenderThetaGen:NN.ZexaF.34796.IvW@aOl59@gi
AVGAutoIt:Injector-JV [Trj]

How to remove Generic.ShellCode.Marte.J.A3C59B69?

Generic.ShellCode.Marte.J.A3C59B69 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment