Threat Database Trojans Trojan.Mamson.A

Trojan.Mamson.A

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 22,254
Threat Level: 80 % (High)
Infected Computers: 92
First Seen: August 19, 2021
Last Seen: May 25, 2026
OS(es) Affected: Windows

The detection of Trojan.Mamson.A on your system indicates a potential security threat that requires immediate attention. This Trojan-type threat can compromise your computer's security and put your personal data at risk. It is essential to understand the nature of this threat and take prompt action to remove it from your system.

What Is Trojan.Mamson.A?

Trojan.Mamson.A is a type of malware that can infiltrate your computer without your knowledge or consent. It can be spread through various means, including malicious downloads, infected software, or compromised websites. Once installed, it can perform a range of malicious activities, including data theft, system compromise, and unauthorized access to your computer.

How Trojan.Mamson.A Operates

Trojan.Mamson.A operates by exploiting vulnerabilities in your system or using social engineering tactics to trick you into installing it. It can then connect to a remote server to receive instructions or transmit stolen data. This malware can also install additional malicious components, such as keyloggers or ransomware, to further compromise your system. Its primary goal is to remain undetected and continue to operate in the background, causing harm to your computer and stealing your sensitive information.

Symptoms of Infection

Identifying the symptoms of a Trojan.Mamson.A infection can be challenging, as it is designed to remain stealthy. However, some common signs of infection include slow system performance, unexpected pop-ups or ads, and unauthorized changes to your system settings. You may also notice that your browser is being redirected to unknown websites or that your antivirus software is disabled. If you suspect that your system is infected, it is crucial to take immediate action to remove the threat.

  • Slow system performance or crashes
  • Unexpected pop-ups or ads
  • Unauthorized changes to system settings
  • Browser redirection to unknown websites
  • Disabled antivirus software

How to Remove Trojan.Mamson.A

  1. Boot your computer in Safe Mode with Networking to prevent the malware from loading and to allow for a more effective removal process.
  2. Perform a full scan of your system using a reputable anti-malware tool, such as SpyHunter, to detect and remove all instances of the malware.
  3. Uninstall any suspicious programs or software that may be related to the infection.
  4. Reset your web browsers, including Chrome, Firefox, and Edge, to their default settings to remove any malicious extensions or add-ons.
  5. Reboot your computer and perform another full scan to ensure that the malware has been completely removed.

Conclusion

Removing Trojan.Mamson.A from your system requires a combination of technical expertise and caution. It is essential to follow the steps outlined above and to use reputable anti-malware tools to ensure that the malware is completely removed. Remember to always be vigilant when browsing the internet, avoid suspicious downloads, and keep your antivirus software up to date to prevent future infections. By taking these precautions, you can help protect your computer and your personal data from the risks associated with Trojan.Mamson.A and other types of malware.

Analysis Report

General information

Family Name: Trojan.Mamson.A
Signature status: No Signature

Known Samples

MD5: b70ad57ddd140e9c1304e80ed190f5ae
SHA1: 0ce65c560e7d2ee40879566fc152a2269e40616b
SHA256: 9A5CC70F0EEF47251F45EB0198C9F329FD03F14E23BFCF6BC5EE6B0E5B1F31DC
File Size: 9.27 MB, 9273856 bytes
MD5: 64be0ba564a17c7ebfcb868c1cada98c
SHA1: 1a0c9a4ce92ea42307e4acdcadba5bf42c8278f7
SHA256: 5866D8FEC9CD33D30F8BB72048B01115ACAD0A2ECAFF6643012BE46F71F130D7
File Size: 9.36 MB, 9361408 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have exports table
  • File doesn't have security information
  • File has TLS information
  • File is 64-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
Show More
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Traits

  • HighEntropy
  • imgui
  • No Version Info
  • ntdll
  • WriteProcessMemory
  • x64

Block Information

Total Blocks: 1,848
Potentially Malicious Blocks: 387
Whitelisted Blocks: 1,366
Unknown Blocks: 95

Visual Map

0 0 0 0 0 ? ? 0 ? 0 0 0 0 0 ? ? 0 0 0 0 0 ? 0 0 0 0 0 0 0 x x 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 x 0 0 x 0 0 x 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 x 0 0 0 ? 0 x 0 0 x 0 0 0 x x 0 0 1 x 0 0 x 0 x x 0 x 0 0 x x x 0 x x x 0 0 x x 0 x ? 0 x 0 x 0 x x 0 x 0 0 0 0 x x x 0 x 0 x x 0 0 0 x x x 1 0 0 0 x 0 0 x 0 x x 0 0 0 0 x x 0 0 x x x x x x x 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 ? x 0 0 0 0 0 0 0 0 0 0 0 x x x 0 0 0 x 0 x 0 x 0 0 0 ? 0 ? ? x x 0 x x 0 0 x 0 x 0 0 0 0 0 0 0 1 0 x x 1 x x 0 0 0 0 x x 1 x 0 1 x ? 0 x x 0 x 0 x x x 0 0 x 0 0 0 x x x x 0 x 0 0 x x x 0 x 0 0 0 0 0 x 0 0 0 0 0 x x x 0 0 0 0 0 0 x ? x x x 0 0 x 0 0 0 0 x x 0 x 0 0 0 0 0 x x 0 0 0 x x x 0 0 0 0 0 0 0 0 x x x x 0 0 0 0 0 0 x x x x x x 0 x 0 x x x ? x 0 0 x 0 0 x x 0 x 1 0 x x 0 0 x x 0 0 0 0 x 1 0 x x 1 ? x 0 x x 0 0 x 0 0 x x 0 0 0 0 0 1 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 x 0 0 0 x 0 x 0 0 x 0 0 x 0 x x 0 0 x 0 0 x 0 0 0 x x x x x 0 0 x 0 0 0 x x x x x 1 0 x 0 x 0 0 0 0 0 1 x 0 x x x 0 x 0 x x x 0 0 0 0 0 0 1 x 0 0 x x x 0 0 0 0 0 0 x x 0 x x 0 0 0 x 0 x 0 x x x 0 x 0 x x ? ? ? x 0 0 0 0 0 x 0 x 0 x ? x x x x x x 0 0 x 0 0 0 x 0 0 x 0 x x x 0 x 0 x 0 0 0 x 0 x x 0 0 x 0 0 x 0 0 0 x 0 0 ? 0 0 0 0 0 0 0 0 0 x 0 x 0 x x 0 x 0 x ? 0 x x x 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 x 0 0 0 0 0 0 0 0 x 0 x 0 0 0 0 x 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 x 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 1 0 0 1 x x 0 0 x x 0 0 x 0 0 1 0 0 1 0 0 1 0 0 1 x 0 0 1 0 x x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x 0 0 x 0 x 0 0 0 0 0 x x 0 x 0 x 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 x 0 0 x 0 0 0 0 x x 1 0 0 0 0 0 0 x x 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x ? 0 0 0 0 0 0 0 0 0 1 x 0 x 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 x ? x x x 0 0 x 0 ? x 0 x 0 x x x 0 0 x x 0 0 0 x 0 0 0 0 x 0 0 x 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 0 0 0 0 x x x 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 1 0 x x x 0 0 x x x x 0 x x x x x 0 x x 0 0 0 x 0 0 0 x 0 0 0 0 x x 0 0 0 x x 0 x 0 0 0 0 0 0 0 0 0 x 0 0 0 0 x 0 0 0 x 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 x 0 x x 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 x 0 x 0 x 0 0 0 0 0 0 1 0 0 0 x 0 ? ? 0 0 0 x x x 0 0 0 ? ? x ? 0 ? 0 0 ? ? ? 0 0 x x x 0 0 x 0 x 0 x 0 x 0 0 0 0 0 0 0 0 0 0 ? x ? ? 0 0 0 0 0 x 0 x 0 0 0 0 x 0 0 x x 0 0 0 0 0 0 ? ? 0 ? x x 0 0 x x 1 0 0 0 x 0 0 0 0 0 x 0 0 x 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? ? 0 x x 0 0 x 0 ? ? 0 x x x 0 0 ? 0 0 0 x 1 0 x x 0 x x 0 x 0 0 x x 0 0 x 0 0 ? 0 0 0 0 0 0 0 0 0 x 0 x 0 0 ? x ? 0 ? 0 0 x 0 x x x x 0 0 0 0 0 0 ? ? 0 ? ? ? ? 0 ? ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x ? ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 ? ? 0 ? 0 ? ? ? 1 ? 0 ? ? ? ? ? ? ? ? ? 1 ? 0 ? ? ? ? 0 ? ? ? 0 0 0 0 0 0 0 0 0 0 0 0 0 ? ? 0 ? 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 1 0 1 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Trojan.Agent.Gen.AMQ

Related Posts

Trending

Most Viewed

Loading...