Trojan

Trojan.Mardom.PN.10 (B) malicious file

Malware Removal

The Trojan.Mardom.PN.10 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Mardom.PN.10 (B) virus can do?

  • Presents an Authenticode digital signature
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine Trojan.Mardom.PN.10 (B)?


File Info:

name: 708B367937CBB08B6336.mlw
path: /opt/CAPEv2/storage/binaries/663eaaa3c9c39ae4802c2f452ba2934017a0a2b333d549989bcc8cb9097da084
crc32: 91C072C5
md5: 708b367937cbb08b6336a2d3466b5d2c
sha1: 3645e79dcf5bb40999b42ab6959e95db8b044ecc
sha256: 663eaaa3c9c39ae4802c2f452ba2934017a0a2b333d549989bcc8cb9097da084
sha512: a070a1514a739b62bf253c4aa922a692fdfc104e5b0fb032f1bc87c9a6844b8becbfd6ccdaf38685d8966af957e7bad19b6291bd91e6cabe78d61ee5b09421b9
ssdeep: 3072:IO55Q8EdspncjVd1/z2n1GhmD3yZ7EB9oG:1m5j5YGsAwR
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E404A201C7819162C2FA1DB5052BC933E5B8AF65805F2BB222F67C8F3B7D6D46706C96
sha3_384: 411c1f309c4664b105d742607e6f7fc182eab98aa67fb98d4cb3a4f26ff391f07afb4881ba93a00b735997d0ee74acf5
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-02-05 02:24:45

Version Info:

Translation: 0x0000 0x04b0
Comments: BdeQUsIYvx
CompanyName: TFPkxYxHhC
FileDescription: zYVJPmVGFF
FileVersion: 4.4.3.100
InternalName: VRXUVBF.exe
LegalCopyright: pObubimlie
OriginalFilename: VRXUVBF.exe
ProductName: yZrOqlLvaK
ProductVersion: 4.4.3.100
Assembly Version: 0.0.0.0

Trojan.Mardom.PN.10 (B) also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Trojan.Mardom.PN.10
MalwarebytesTrojan.Agent.Gen
CrowdStrikewin/malicious_confidence_60% (D)
SymantecMSIL.Downloader!gen7
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.KHD
APEXMalicious
BitDefenderGen:Trojan.Mardom.PN.10
MicroWorld-eScanGen:Trojan.Mardom.PN.10
SophosML/PE-A
F-SecureHeuristic.HEUR/AGEN.1100758
FireEyeGeneric.mg.708b367937cbb08b
EmsisoftGen:Trojan.Mardom.PN.10 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1100758
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Trojan.Mardom.PN.10
MAXmalware (ai score=82)
YandexTrojan.GenKryptik!i8TnKZ6S3E4
eGambitPE.Heur.InvalidSig
FortinetMSIL/Tiny.BGM!tr.dldr
BitDefenderThetaGen:NN.ZemsilF.34182.lm1@aW3HHRe
Cybereasonmalicious.dcf5bb
MaxSecureTrojan.Malware.300983.susgen

How to remove Trojan.Mardom.PN.10 (B)?

Trojan.Mardom.PN.10 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment