Categories: Trojan

Trojan.Mardom.MN.19 (B) malicious file

The Trojan.Mardom.MN.19 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Mardom.MN.19 (B) virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine Trojan.Mardom.MN.19 (B)?


File Info:

name: D49EEFA60D208C4FEFEA.mlwpath: /opt/CAPEv2/storage/binaries/35051806ca14a8c48be7fa2204f40dfcd0b4e0a8f6255c3cb6e089a9677d04d9crc32: 09E2430Emd5: d49eefa60d208c4fefea20e7924dbe74sha1: 58679b707c8017f9ca3543a91e11bfe01496d83asha256: 35051806ca14a8c48be7fa2204f40dfcd0b4e0a8f6255c3cb6e089a9677d04d9sha512: e3bc09de0d9f3351e82d0349710bf97825820e45b13cdce6caf23aed480aa6dddf3f47b81de0aa9d0ed1db1aed5fa5d5875b2a7beb1e81e04644812ad94093eassdeep: 12288:N5hxG0h5OIeRLHDyNol8J287LGOFfgaTQu/o03kKnFbGPieLU5t8sG:POIcvyNo+PnGOFtQu/MKnFr7i5type: PE32 executable (GUI) Intel 80386, for MS Windowstlsh: T15D05E008678CEA21FE3E2177B47041988E76DA4DC0D6671F5CCCFBF9E4A67285E640A1sha3_384: 021f1a326f26d63232318d1f89c18a463cccfe11e3866c2e1a9ea3c660917e673a69c7deb7d1a03282e0973137c5fe7cep_bytes: ff250020400000000000000000000000timestamp: 2020-09-28 02:28:25

Version Info:

0: [No Data]

Trojan.Mardom.MN.19 (B) also known as:

Lionic Trojan.Win32.Generic.4!c
MicroWorld-eScan Gen:Trojan.Mardom.MN.19
ALYac Gen:Trojan.Mardom.MN.19
Cylance Unsafe
Sangfor Trojan.Win32.Wacatac.C
K7AntiVirus Trojan ( 0056f8d21 )
Alibaba Trojan:Win32/Maldoc.ali2000008
K7GW Trojan ( 0056f8d21 )
Cybereason malicious.60d208
Cyren W32/MSIL_Kryptik.BSH.gen!Eldorado
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of MSIL/Packed.DotNetGuard.A suspicious
APEX Malicious
Paloalto generic.ml
Kaspersky HEUR:Trojan.Win32.Generic
BitDefender Gen:Trojan.Mardom.MN.19
NANO-Antivirus Trojan.Win32.KillProc2.hxjbkm
Avast Win32:CrypterX-gen [Trj]
Tencent Win32.Trojan.Generic.Wrgo
Ad-Aware Gen:Trojan.Mardom.MN.19
Emsisoft Gen:Trojan.Mardom.MN.19 (B)
DrWeb Trojan.KillProc2.11888
McAfee-GW-Edition GenericRXMC-WK!D49EEFA60D20
FireEye Generic.mg.d49eefa60d208c4f
Sophos ML/PE-A
Ikarus Trojan.MSIL.Krypt
GData Gen:Trojan.Mardom.MN.19
Avira HEUR/AGEN.1231989
Arcabit Trojan.Mardom.MN.19
Microsoft Trojan:MSIL/Stealer.RT!MTB
Cynet Malicious (score: 100)
AhnLab-V3 Trojan/Win32.RL_Generic.C4213717
McAfee GenericRXMC-WK!D49EEFA60D20
MAX malware (ai score=84)
VBA32 TScope.Trojan.MSIL
Malwarebytes Backdoor.NanoCore
SentinelOne Static AI – Malicious PE
MaxSecure Trojan.Malware.7164915.susgen
Fortinet MSIL/GenKryptik.EREI!tr
BitDefenderTheta Gen:NN.ZemsilF.34666.YmW@a04mzRpi
AVG Win32:CrypterX-gen [Trj]
Panda Trj/GdSda.A
CrowdStrike win/malicious_confidence_100% (W)

How to remove Trojan.Mardom.MN.19 (B)?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

What is “Malware.AI.1232470033”?

The Malware.AI.1232470033 is considered dangerous by lots of security experts. When this infection is active,…

43 mins ago

Tedy.527363 removal guide

The Tedy.527363 is considered dangerous by lots of security experts. When this infection is active,…

59 mins ago

Should I remove “Zusy.472379 (B)”?

The Zusy.472379 (B) is considered dangerous by lots of security experts. When this infection is…

1 hour ago

Win32.Morto.A removal tips

The Win32.Morto.A is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago

Win32/Downloader.Agent.CP potentially unwanted information

The Win32/Downloader.Agent.CP potentially unwanted is considered dangerous by lots of security experts. When this infection…

1 hour ago

Trojan:MSIL/Zusy.PTHT!MTB removal tips

The Trojan:MSIL/Zusy.PTHT!MTB is considered dangerous by lots of security experts. When this infection is active,…

2 hours ago