Malware

Should I remove “Generic.ShellCode.PE.Marte.1.4681B467”?

Malware Removal

The Generic.ShellCode.PE.Marte.1.4681B467 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.ShellCode.PE.Marte.1.4681B467 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Behavioural detection: Injection (inter-process)
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.ShellCode.PE.Marte.1.4681B467?


File Info:

name: A4B820CC361338B2329E.mlw
path: /opt/CAPEv2/storage/binaries/c97acf1312a3c0afe1335d6f09d1b7646a0e9dcd4257bb2e8cc40758ddd58df9
crc32: FF31F690
md5: a4b820cc361338b2329e41f1b6af21b7
sha1: b386cacb327e897cc414874473bc9fb77fcdbf53
sha256: c97acf1312a3c0afe1335d6f09d1b7646a0e9dcd4257bb2e8cc40758ddd58df9
sha512: 8484b94d4912fb1095c5305b222a2b52cfc1f0a1a63e0d069b38e6664334271719a360076fd757f5371361643f51f954f464c12671dc13a41d948b7edec10577
ssdeep: 768:0MxjQ7T3wrlUSJ76xjgtlEz90ANpgZlBp3qApX6e5WRYEDnUK:dxjQ7LwrlUScjOEz9TNp8lr3quX6e5S
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1EC637C06B86D3F21C83868309525F25B49A4BF437B9CDDDB6F91B6D94A3E4E1281B01F
sha3_384: a06303d2dae5adcc8201e3fc9755e5123572db111f93c501805f794245f64d66568303a0e6998abf8e374fd14d57fd84
ep_bytes: e8fe030000e974feffff558bec6a00ff
timestamp: 2020-08-30 02:09:42

Version Info:

0: [No Data]

Generic.ShellCode.PE.Marte.1.4681B467 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Johnnie.4!c
MicroWorld-eScanGeneric.ShellCode.PE.Marte.1.4681B467
FireEyeGeneric.mg.a4b820cc361338b2
McAfeeArtemis!A4B820CC3613
MalwarebytesTrojan.MalPack.XOR
VIPREGeneric.ShellCode.PE.Marte.1.4681B467
SangforTrojan.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
AlibabaTrojan:Win32/Injector.15c60176
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_90% (D)
CyrenW32/Dropper.gen8!Maximus
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Injector.EPMT
APEXMalicious
CynetMalicious (score: 100)
BitDefenderGeneric.ShellCode.PE.Marte.1.4681B467
AvastWin32:Malware-gen
EmsisoftGeneric.ShellCode.PE.Marte.1.4681B467 (B)
F-SecureHeuristic.HEUR/AGEN.1317124
TrendMicroRansom_CRYPHYDRA.SMJ
McAfee-GW-EditionArtemis!Trojan
SophosMal/EncPk-AGS
IkarusTrojan.Win32.Rozena
GDataGeneric.ShellCode.PE.Marte.1.4681B467
AviraHEUR/AGEN.1317124
ArcabitGeneric.ShellCode.PE.Marte.1.4681B467
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
ALYacGeneric.ShellCode.PE.Marte.1.4681B467
VBA32BScope.Trojan.Shelma
Cylanceunsafe
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_CRYPHYDRA.SMJ
RisingMalware.Undefined!8.C (TFE:5:8Oc0oaWSuNS)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Swrort.Y!tr
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Generic.ShellCode.PE.Marte.1.4681B467?

Generic.ShellCode.PE.Marte.1.4681B467 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment