Malware

GenPack:Generic.Shellcode.Ode.Marte.E.5702FEFD information

Malware Removal

The GenPack:Generic.Shellcode.Ode.Marte.E.5702FEFD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What GenPack:Generic.Shellcode.Ode.Marte.E.5702FEFD virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Attempted to write directly to a physical drive
  • Creates a copy of itself
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine GenPack:Generic.Shellcode.Ode.Marte.E.5702FEFD?


File Info:

name: 4468F2F89366A4E07947.mlw
path: /opt/CAPEv2/storage/binaries/67ddc832a6d1fcc81cabce33d4cecbf81c9ad604fd2f65eb6300b1d184f84980
crc32: 4DDA514E
md5: 4468f2f89366a4e07947815f61f333ce
sha1: f4b84de4be8f4fff2ce39d653877fabaa8b5f9d6
sha256: 67ddc832a6d1fcc81cabce33d4cecbf81c9ad604fd2f65eb6300b1d184f84980
sha512: 6a18b8f9db1b36f2d7cece49a5c01b0b07d05e791d057b70a36f9b18f6d87f921e98bda192bdabe5e4bc3ea55c78fdfc23a63e968313da308ff383d59f807b34
ssdeep: 6144:iuD6Azxj5cpidz4FtFjWna4aIUlhhMvJPnVh05JSCvIbBTq/T6WBjQjZs:ND6s5yidzWjJ4hwhcJPVyLmg/TFjqZs
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C0642365F2C84116D982E7B3E563303A4B7DFAE911CC12B8B84404795FAC976AF8BDC4
sha3_384: 994a21c01456bc05322bf1be66548d5bcfc17f646a18884a196b34962e49c2a19090562cfd092727a59f00128b7e0c7c
ep_bytes: 6801e05000e801000000c3c346267e70
timestamp: 2008-01-25 02:01:01

Version Info:

0: [No Data]

GenPack:Generic.Shellcode.Ode.Marte.E.5702FEFD also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Rbot.m!c
Elasticmalicious (high confidence)
MicroWorld-eScanGenPack:Generic.Shellcode.Ode.Marte.E.5702FEFD
SkyhighBehavesLike.Win32.Backdoor.fc
McAfeeArtemis!4468F2F89366
MalwarebytesGeneric.Malware.AI.DDS
ZillyaBackdoor.RBot.Win32.19481
SangforSuspicious.Win32.Save.ins
AlibabaBackdoor:Win32/Wmfap.d2592308
Cybereasonmalicious.4be8f4
SymantecW32.Spybot.Worm
ESET-NOD32a variant of Win32/Rbot
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Trojan.Hupigon-6992275-0
KasperskyBackdoor.Win32.Rbot.djt
BitDefenderGenPack:Generic.Shellcode.Ode.Marte.E.5702FEFD
NANO-AntivirusTrojan.Win32.Rbot.xuzk
AvastMO97:ShellCode-FG [Expl]
SophosMal/Generic-S
F-SecureTrojan.TR/Downloader.Gen
DrWebWin32.HLLW.MyBot
VIPREGenPack:Generic.Shellcode.Ode.Marte.E.5702FEFD
TrendMicroTROJ_GEN.R03FC0DKU23
EmsisoftGenPack:Generic.Shellcode.Ode.Marte.E.5702FEFD (B)
IkarusTrojan-Downloader
JiangminBackdoor/RBot.ecv
WebrootW32.Malware.Gen
VaristW32/Backdoor.UIID-8484
AviraTR/Downloader.Gen
Antiy-AVLTrojan[Backdoor]/Win32.Rbot
Kingsoftmalware.kb.b.919
MicrosoftBackdoor:Win32/IRCbot.gen!Z
XcitiumBackdoor.Win32.Rbot.~gen@1xtqdu
ArcabitGenPack:Generic.Shellcode.Ode.Marte.E.D1646FEFD
ZoneAlarmBackdoor.Win32.Rbot.djt
GDataGenPack:Generic.Shellcode.Ode.Marte.E.5702FEFD
GoogleDetected
AhnLab-V3Worm/Win32.IRCBot.C83317
BitDefenderThetaAI:Packer.E94504BF1E
MAXmalware (ai score=100)
VBA32SScope.Backdoor.Sdbot
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R03FC0DKU23
RisingWorm.Agent!8.25 (TFE:5:wimSjtwMjLK)
YandexTrojan.GenAsa!ZGkK99mon0g
MaxSecureTrojan.Malware.139420.susgen
FortinetW32/Generic!tr
AVGMO97:ShellCode-FG [Expl]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove GenPack:Generic.Shellcode.Ode.Marte.E.5702FEFD?

GenPack:Generic.Shellcode.Ode.Marte.E.5702FEFD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment