Threat Database Trojans Trojan.Mettle.B

Trojan.Mettle.B

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 16,413
Threat Level: 80 % (High)
Infected Computers: 100
First Seen: September 15, 2023
Last Seen: July 4, 2026
OS(es) Affected: Windows

The detection of Trojan.Mettle.B on your system indicates a potential security threat that requires immediate attention. This report provides an overview of the threat, its operating methods, symptoms of infection, and steps to remove it from your system. It is essential to address this issue promptly to prevent further damage or unauthorized access to your data.

What Is Trojan.Mettle.B?

Trojan.Mettle.B is identified as a Trojan-type threat, which means it is a type of malware that disguises itself as legitimate software to gain unauthorized access to a computer system. Trojans can be used to spy on users, steal sensitive information, or provide a backdoor for other malicious activities. The name Trojan.Mettle.B itself does not specify a known malware family, but its classification as a Trojan indicates its potential to cause harm.

How Trojan.Mettle.B Operates

Trojans like Trojan.Mettle.B typically operate by deceiving users into installing them on their systems. This can happen through various means, such as downloading software from untrusted sources, opening malicious email attachments, or clicking on links to compromised websites. Once installed, the Trojan can execute a range of malicious activities, from data theft and spyware functions to downloading additional malware. The specific operations of Trojan.Mettle.B would depend on its design and the intentions of its creators.

Symptoms of Infection

Symptoms of a Trojan infection can vary widely, depending on the malware's purpose and functionality. Common signs include unexpected changes to system settings, unusual network activity, slow system performance, and the appearance of unwanted programs or toolbars. In some cases, the infection may not exhibit obvious symptoms, making it difficult for users to detect without the aid of security software.

  • Unexplained changes in system behavior or performance
  • Appearance of unwanted software or tools
  • Increased network activity without a clear cause
  • Pop-ups or unexpected advertisements

How to Remove Trojan.Mettle.B

  1. Boot your system in Safe Mode with Networking to limit the malware's ability to interfere with the removal process.
  2. Use a reputable anti-malware tool, such as SpyHunter, to perform a full scan of your system. This can help identify and remove Trojan.Mettle.B and any associated malware.
  3. Manually uninstall any suspicious programs that were installed around the time of the infection. Be cautious and only remove programs you are certain are malicious or unnecessary.
  4. Reset your web browsers (Google Chrome, Mozilla Firefox, Microsoft Edge, etc.) to their default settings to remove any malicious extensions or settings changes made by the Trojan.
  5. After completing the above steps, reboot your system and perform another full scan with your anti-malware tool to ensure that all traces of the malware have been removed.

Conclusion

Removing Trojan.Mettle.B from your system requires careful and thorough action to ensure all components of the malware are eliminated. It is crucial to stay vigilant and keep your security software up to date to prevent future infections. Regularly backing up important data and being cautious when interacting with emails, downloads, and websites can significantly reduce the risk of malware infections. If you are unsure about any part of the removal process, consider seeking help from a professional to ensure your system is completely secure.

Analysis Report

General information

Family Name: Trojan.Mettle.B
Signature status: No Signature

Known Samples

MD5: 4cf9ff10d5bc4e27726d56c3e824acca
SHA1: 7db141b1d4070d7687681ed40de80d780c7e71fc
SHA256: 188C0526DF3CD6BC0705A78E78E97B219D77DD99268A1DE2FB019D7326E50693
File Size: 1.23 MB, 1226926 bytes
MD5: f4c4062692f0f268443bd08ffcb11cf0
SHA1: b3dd514b93b2c22aa53b0edc28771e66fc046ebe
SHA256: DF1E16A018913728F4800BB29099CC88A7AE1390BED4934EEA155E5701B7B1CB
File Size: 1.23 MB, 1226944 bytes
MD5: 37e615181c037222acb7b55f9d975172
SHA1: a4758c2b700faa70c0df247e421e95ff6dc86816
SHA256: 2F651F286C905E1D5320CDA83DDDD0042508A7DA004E41736D611DE9B459891A
File Size: 1.15 MB, 1149040 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have resources
  • File doesn't have security information
  • File has exports table
  • File has TLS information
  • File is 32-bit executable
  • File is console application (IMAGE_SUBSYSTEM_WINDOWS_CUI)
  • File is either console or GUI application
  • File is Native application (NOT .NET application)
Show More
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Traits

  • big overlay
  • No Version Info
  • VirtualQueryEx
  • x86

Block Information

Total Blocks: 2,873
Potentially Malicious Blocks: 1,169
Whitelisted Blocks: 1,701
Unknown Blocks: 3

Visual Map

0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x x x x x x 0 x 0 0 0 0 0 x x 0 0 0 0 0 0 x x x x x x x 0 x 0 x x 0 0 0 x 0 0 0 0 0 0 0 x x 0 x x x x 0 0 x x x x x x 0 x 0 x x x x x x x x x 0 0 0 x 0 0 x x x 0 0 x x x x x x x x x x x x x x x 0 x x 0 0 x 0 x x x x x x 0 x x 1 x x x x 0 0 x 0 0 x x 0 x x x x x x x 0 0 x x 0 0 0 0 0 x x x x x x x x x x x 0 0 x x x x 0 x x x 0 x 0 0 x x x 0 x x 0 1 x x x 0 0 x x 0 0 0 0 0 x x x x x x x x x x x x x 0 0 0 x 0 x 0 0 x x x x x 2 0 x 0 x x 0 x 0 x x x x x x x x x 0 x x x x x x 0 x x x 0 x 0 x x x x 0 0 x x x 0 x x x 0 x 0 0 0 0 x x x x x x 0 0 x x x x x x x x x 0 x x 0 0 x x x x x x x x x x x x x x x x x x x 0 0 x x x x x x x x x x x x x x x 0 0 x x x x x x x x x x x x 0 x x x x x x x x 0 0 0 x x x 0 0 x x x x x x x x x x x x x 0 0 x 0 0 x x x x x 0 0 x x x x x x x x x x x 0 0 0 0 0 0 0 0 x x x 0 x x x x 0 0 x 0 0 x 0 x x x x x x x 0 x x 0 0 x 0 x x x x x x x x x x x x x x x x x x x x 0 x x x x x x x x x x x x 0 x x x x x 0 ? 0 x x x 0 x x x x ? x x x x x x x x x x x x x x x x x x x x x x x x x 0 x x x x 0 x x x x x 0 x x x x x x x x x x x x x x x x x x 0 x x 0 0 0 0 0 x 0 0 0 0 x x x x x x x 0 x x x 0 0 x 0 x x 0 0 0 0 0 0 0 0 x x x 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 x 0 x 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 x 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 x x x x x 0 0 x 0 x 0 0 0 x x 0 x x 0 0 0 x 0 0 x 0 0 0 x 0 0 x 0 x 0 0 0 x x x x 0 x x 0 0 x x 0 0 x x 0 x 0 x 0 0 0 0 0 0 0 0 0 0 x x x x x 0 x x x x x 0 0 x 0 0 0 x 0 0 0 0 0 x x x x x x 0 0 x x x 0 0 0 0 0 0 0 x 0 0 x x x x x 0 0 0 0 0 0 0 x 0 0 0 x x x 0 x 0 0 x 0 0 0 0 0 x x 0 x x 0 0 0 0 0 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 x x x x 0 0 x 0 0 x 0 0 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 x x x 0 0 0 x x 0 0 x 0 x x 0 0 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 x x x x 0 0 x x x x x x x 0 x 0 0 0 x x x x 0 0 0 x x 0 0 x x x x 0 x x x x 0 x x x x 0 x 0 0 0 x 0 x x x x 0 x x 0 0 x x 0 0 x x 0 0 x x 0 x x x x x x 0 0 0 x x 0 x x 0 0 0 x 0 x 0 x x 0 x 0 0 0 x 0 0 0 0 x x 0 0 0 0 0 0 0 x x 0 x 0 0 x 0 0 0 0 0 0 x 0 0 0 0 0 0 0 x 0 0 x 0 0 0 0 x 0 x x x 0 0 0 0 0 0 x x 0 0 0 x 0 x x 0 0 x x 0 0 x x 0 0 0 0 x x 0 0 0 0 x x 0 0 0 0 0 0 0 0 x 0 x x x x 0 0 0 0 0 x 0 0 x 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x x x 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 x x 0 0 0 0 0 0 0 x 0 0 0 0 x 0 0 0 x x 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 x 0 0 x 0 0 0 0 0 0 0 0 0 x 0 0 x 0 x 0 0 0 x x x 0 x 0 x 0 0 x 0 x x 0 x x x 0 0 0 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 x x x x x x 0 0 0 x 0 0 x x 0 x x 0 0 x x 0 x x 0 0 x 0 0 0 x 0 x 0 x x 0 0 x 0 x 0 0 0 0 0 x x x 0 0 x x 0 x 0 0 0 x x 0 0 0 0 x 0 0 0 0 0 0 x 0 0 0 0 x x 0 0 x x 0 x x 0 x 0 x 0 x 0 0 0 0 0 x 0 0 x 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 x x 0 0 0 x x x 2 x x x x x x x x x x x x 0 0 x x x x x 0 x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x 0 0 0 0 0 0 0 x x 0 0 0 x x x 0 0 x 0 0 x x x x x x x x x x x x x x x x x 0 x x x x x x x x 0 x x 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 x x x x x x x x x x x x x x x x x 0 x x x x x x x x x x x 0 x x x x x x x x x 0 0 x x x 1 x 0 0 0 0 x x x x 0 x x x x x x 0 0 x x x x 0 x x 0 x x x x x x x x 0 x x x x x x x x x x x x x x x x x 0 0 x x 0 x x x x x x x x 0 0 0 x x x x x 0 x x x x 0 x x x x x x x 0 0 x x x x x x x 0 x x 0 x x x x x 0 0 x x x x x x 0 0 x 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x 0 x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x 0 x 0 x 0 x 2 x x 0 x x x x x x x x x 0 x x x x x x x x 0 x x x x x x x x x x x x x x x x x 0 0 0 0 x x x x x x x 0 x x x x x x x x x x x x x x x 0 x x x x x x x x x x x x 0 x x 0 x x x x x x x x 0 x x x 0 x x x 0 x x x x x x x x 0 x x x 0 0 x 0
... Data truncated
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Mettle.B

Files Modified

File Attributes
c:\users\user\downloads\temp\shsandbox-win32.dll-5.21.4.9999-x86.dmp Generic Read,Write Data,Write Attributes,Write extended,Append data

Windows API Usage

Category API
Other Suspicious
  • AdjustTokenPrivileges
Network Winsock2
  • WSAStartup
Network Winsock
  • gethostbyaddr
  • gethostbyname
  • gethostname

Trending

Most Viewed

Loading...