Trojan

TrojanDownloader:Win32/Tnega!MSR removal guide

Malware Removal

The TrojanDownloader:Win32/Tnega!MSR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/Tnega!MSR virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • At least one process apparently crashed during execution
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid

How to determine TrojanDownloader:Win32/Tnega!MSR?


File Info:

name: 5A435DBB34225EE12350.mlw
path: /opt/CAPEv2/storage/binaries/9543ff1aec6fff81e2a2ec65841864acfdd71343fb88da5b8f0575d41afcb87c
crc32: 7E7CD588
md5: 5a435dbb34225ee123506eefe5ef141d
sha1: 3044fce0070b03fd97ffb52b0d480d2e4f7e39ab
sha256: 9543ff1aec6fff81e2a2ec65841864acfdd71343fb88da5b8f0575d41afcb87c
sha512: cc1cb90123d42596820551e43034678f285dc86d77ab38b7c26140a4c473a5a16bfb4c03ddffc814f41aceb27001afcffa377e3f49cbbbe702863a0146a6d770
ssdeep: 1536:uQ7oBsDs0yiVXfO9PyZm6mK+fVTPvzYDnhchHLUuzR+p8FAZVsWqcde0rvEQlrEn:uQpo0x8JyZGTPvzYDnhceuzRVANe0rvq
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T172935D1375D2C871E676193114B4DAE18A3FF9205E609EAB3789173E4F342C19D32DAB
sha3_384: 32f8babb2222196ed17eef506dd0fa39a7466ec85f7a9c45520a769bda118c8dcc80574c0211f3af73a325d14fd7dd85
ep_bytes: e8e6030000e97afeffff558bec6a00ff
timestamp: 2021-11-28 15:33:38

Version Info:

0: [No Data]

TrojanDownloader:Win32/Tnega!MSR also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Generic.31254455
FireEyeGeneric.mg.5a435dbb34225ee1
CAT-QuickHealTrojandownloader.Tnega
McAfeeRDN/Generic.grp
CylanceUnsafe
SangforTrojan.Win32.Tnega.MSR
K7AntiVirusTrojan ( 0058b4f91 )
AlibabaTrojanDownloader:Win32/Tnega.e60e61c8
K7GWTrojan ( 0058b4f91 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/TrojanDropper.Agent.SPO
APEXMalicious
BitDefenderTrojan.Generic.31254455
TencentMalware.Win32.Gencirc.11db6c1e
Ad-AwareTrojan.Generic.31254455
SophosMal/Generic-S
Comodofls.noname@0
ZillyaDropper.Agent.Win32.467479
TrendMicroTROJ_GEN.R002C0DL521
McAfee-GW-EditionRDN/Generic.grp
EmsisoftTrojan.Generic.31254455 (B)
IkarusTrojan-Dropper.Win32.Agent
WebrootW32.Adware.Gen
Antiy-AVLTrojan/Generic.ASMalwS.34E45DB
GridinsoftMalware.Win32.GenericMC.cc
MicrosoftTrojanDownloader:Win32/Tnega!MSR
GDataTrojan.Generic.31254455
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.Generic.C4789773
VBA32BScope.TrojanDropper.Agent
ALYacTrojan.Generic.31254455
MalwarebytesTrojan.Crypt
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0DL521
RisingTrojan.Generic@ML.87 (RDMK:Lufri+C1ie/n01nwyja7rQ)
eGambitUnsafe.AI_Score_99%
FortinetW32/PossibleThreat
BitDefenderThetaGen:NN.ZexaF.34114.fuW@aaS1HIoi
AVGWin32:SoftFire-A [Trj]
AvastWin32:SoftFire-A [Trj]
MaxSecureTrojan.Malware.300983.susgen

How to remove TrojanDownloader:Win32/Tnega!MSR?

TrojanDownloader:Win32/Tnega!MSR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment