Trojan

Trojan.Mardom.PN.24 (B) removal

Malware Removal

The Trojan.Mardom.PN.24 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Mardom.PN.24 (B) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs

How to determine Trojan.Mardom.PN.24 (B)?


File Info:

crc32: F367EB18
md5: dd253e59509621e96e277a5a41897eea
name: DD253E59509621E96E277A5A41897EEA.mlw
sha1: cfeb53e354b65908de1c266a0a210ba281797dd7
sha256: 26645b83c7a5796002eb1317299ac1a85f377476cc54efa5b583565807813e49
sha512: 9bea2586ba294d47821b2d61673fc5e9095f792d694b0c184a35ecacf5a34223f0026eb370bf267699dbdfb8da9faa9e7922b8b7a0fc183dcb881d1e64204eea
ssdeep: 49152:7P/fd8A7XPYs8DmbUWCeIJb+MHazg71TVRQg9j32siFOGHRtVpej1oTRN+YwypJ:T3j/YmbDIJH9Vl9jm/4Gnyj1w+YT
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: eguhaHOHZflQCwjR6GfUyCEmufKk6g
Assembly Version: 0.7.4.2
InternalName: assemblychange.exe
FileVersion: 5.3.0.2
CompanyName: zzSuNmlKfC5qWxr6NMAgIR5ZbH5AQF
LegalTrademarks: Bq3UqPpfbuWsoDpvcDm2KU6uHfNz8h
Comments: ZZK05oR9pHg0PaJggXrcsxs79yrjkO
ProductName: FCvzqdp9dywEjDpMHj7OFygWCUKZbn
ProductVersion: 5.3.0.2
FileDescription: RHJrsWaVYRcz2Xx83d7wGVdKDsMOqr
OriginalFilename: assemblychange.exe

Trojan.Mardom.PN.24 (B) also known as:

K7AntiVirusTrojan ( 0044fb7e1 )
LionicTrojan.Win32.Generic.lVyh
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacGen:Trojan.Mardom.PN.24
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:Win32/Snojan.11a35f43
K7GWTrojan ( 0044fb7e1 )
Cybereasonmalicious.950962
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Bladabindi.AH
APEXMalicious
AvastMSIL:GenMalicious-ASI [Trj]
ClamAVWin.Packed.Zusy-7753321-0
KasperskyTrojan.Win32.Snojan.ciwr
BitDefenderGen:Trojan.Mardom.PN.24
NANO-AntivirusTrojan.Win32.Snojan.fejyad
MicroWorld-eScanGen:Trojan.Mardom.PN.24
TencentWin32.Trojan.Snojan.Wrzx
Ad-AwareGen:Trojan.Mardom.PN.24
SophosMal/Generic-R + Mal/Bladabi-P
ComodoMalware@#131zizoart8ol
BitDefenderThetaGen:NN.ZemsilF.34236.ho0@aueQi7m
McAfee-GW-EditionArtemis
FireEyeGeneric.mg.dd253e59509621e9
EmsisoftGen:Trojan.Mardom.PN.24 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/ATRAPS.Gen
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.26BA642
MicrosoftBackdoor:Win32/Bladabindi!ml
SUPERAntiSpywareTrojan.Agent/Gen-Faldesc[Cont]
GDataGen:Trojan.Mardom.PN.24
AhnLab-V3Trojan/Win32.Agent.C2606430
McAfeeArtemis!DD253E595096
MAXmalware (ai score=99)
MalwarebytesHackTool.Agent.ACGen
PandaTrj/GdSda.A
YandexTrojan.Snojan!CIatW6rwFVo
IkarusWorm.MSIL.Bladabindi
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/Generic
AVGMSIL:GenMalicious-ASI [Trj]
Paloaltogeneric.ml

How to remove Trojan.Mardom.PN.24 (B)?

Trojan.Mardom.PN.24 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment