Trojan

TrojanDownloader:MSIL/Tnega.MS!MTB removal guide

Malware Removal

The TrojanDownloader:MSIL/Tnega.MS!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:MSIL/Tnega.MS!MTB virus can do?

  • Presents an Authenticode digital signature
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine TrojanDownloader:MSIL/Tnega.MS!MTB?


File Info:

crc32: 5E1C2130
md5: 0a02a61ad48899b80bc9acb733faed59
name: 0A02A61AD48899B80BC9ACB733FAED59.mlw
sha1: 6c3f65888b6821b92603bf2f3aeb3b7b10b05109
sha256: 3ada27c7c8e3828ea8ab4b6e4b8372b879c90ea95306a2a5ba30758cf097399d
sha512: 4c6f256cf8b176a3025695bbe3d2aac368e09d0cbdaefe69969669c43c06b0f31f0d7396ad44dfcf4b687b3bad2d3a13c379f2371661b2097a1a8568212231d9
ssdeep: 768:XgeHHvx9bZATFiTUYcpMdgsRLO4oCyChA:XgyxUTTYcCdgsZOTCyV
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: Copyright 2022 xa9 PTRHIfkH. All rights reserved.
Assembly Version: 3.2.3.2
InternalName: FUGYtEiA.exe
FileVersion: 3.4.8.0
CompanyName: RTqREwsE
LegalTrademarks: ZhoDtRaW
Comments: ISaBvMvS
ProductName: FUGYtEiA
ProductVersion: 3.2.3.2
FileDescription: DbBQzMyT
OriginalFilename: FUGYtEiA.exe
Translation: 0x0409 0x0514

TrojanDownloader:MSIL/Tnega.MS!MTB also known as:

MicroWorld-eScanTrojan.GenericKD.45768404
FireEyeGeneric.mg.0a02a61ad48899b8
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Woreflint.A
K7AntiVirusTrojan-Downloader ( 0057834b1 )
BitDefenderTrojan.GenericKD.45768404
CyrenW32/MSIL_Kryptik.DGB.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan-Downloader.MSIL.BaseLoader.gen
AvastWin32:DangerousSig [Trj]
RisingDownloader.Agent!1.D296 (CLASSIC)
Ad-AwareTrojan.GenericKD.45768404
EmsisoftTrojan.GenericKD.45768404 (B)
F-SecureTrojan.TR/Dldr.Agent.tkdte
McAfee-GW-EditionArtemis!Trojan
SophosMal/Generic-S
IkarusTrojan-Downloader.MSIL.Agent
AviraTR/Dldr.Agent.tkdte
MAXmalware (ai score=89)
KingsoftWin32.Heur.KVM019.a.(kcloud)
MicrosoftTrojanDownloader:MSIL/Tnega.MS!MTB
ArcabitTrojan.Generic.D2BA5ED4
ZoneAlarmHEUR:Trojan-Downloader.MSIL.BaseLoader.gen
GDataTrojan.GenericKD.45768404
CynetMalicious (score: 85)
AhnLab-V3Trojan/Win32.Kryptik.R367655
McAfeeGenericRXNS-DT!0A02A61AD488
MalwarebytesTrojan.Crypt
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.HKY
TencentWin32.Trojan.Inject.Auto
FortinetMalicious_Behavior.SB
AVGWin32:DangerousSig [Trj]
PandaTrj/CI.A
Qihoo-360Win32/TrojanDownloader.Generic.HwMAdjkA

How to remove TrojanDownloader:MSIL/Tnega.MS!MTB?

TrojanDownloader:MSIL/Tnega.MS!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment