Trojan

How to remove “Trojan:MSIL/Tnega.SS!MTB”?

Malware Removal

The Trojan:MSIL/Tnega.SS!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:MSIL/Tnega.SS!MTB virus can do?

  • Presents an Authenticode digital signature
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan:MSIL/Tnega.SS!MTB?


File Info:

crc32: 044169BD
md5: 6ecb42a8b14658cd4ee39d5e09b103f5
name: 6ECB42A8B14658CD4EE39D5E09B103F5.mlw
sha1: f1de55b6def8aadd6cfe7afccb230cf288ad23dd
sha256: 6239f3411c5abb060b14d248c7408eacc2c02c0653ed10ac533177675220aed7
sha512: e0bb9ecf859eba0b4130a9bed83a3cf7634108200483236eb5557bbf6a3c3a8544a1d6ad670450009f92b514acb3b2622de9aafaa3f4cfcecf5d3eba0630ef6d
ssdeep: 6144:JhoSaX02Mu1UEX/H1UJn4H6LOU/+Pq58s2lP3iFwDt:12Mu1UEX/H1UJn4aKUcq58syP3iF
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: Copyright 2022 xa9 GAuhnkDx. All rights reserved.
Assembly Version: 7.8.5.5
InternalName: VqjVGinN.exe
FileVersion: 8.7.8.8
CompanyName: RIpLtRvA
LegalTrademarks: FwimgQzl
Comments: ExLBaikX
ProductName: VqjVGinN
ProductVersion: 7.8.5.5
FileDescription: PgJWsfgU
OriginalFilename: VqjVGinN.exe
Translation: 0x0409 0x0514

Trojan:MSIL/Tnega.SS!MTB also known as:

Elasticmalicious (high confidence)
DrWebTrojan.DownLoader36.49062
MicroWorld-eScanTrojan.GenericKD.36399172
FireEyeGeneric.mg.6ecb42a8b14658cd
Qihoo-360Win32/Backdoor.Nanocore.HgIASPsA
ALYacBackdoor.RAT.MSIL.NanoCore
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan-Downloader ( 005785f41 )
BitDefenderTrojan.GenericKD.36399172
K7GWTrojan-Downloader ( 005785f41 )
Cybereasonmalicious.6def8a
BitDefenderThetaGen:NN.ZemsilF.34590.um1@a8teNeoi
CyrenW32/MSIL_Kryptik.DGL.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.HLN
APEXMalicious
AvastWin32:DangerousSig [Trj]
KasperskyHEUR:Backdoor.MSIL.NanoBot.gen
AlibabaBackdoor:MSIL/Tnega.fb51c2cd
ViRobotTrojan.Win32.Z.Agent.341280
Ad-AwareTrojan.GenericKD.36399172
EmsisoftTrojan.GenericKD.36399172 (B)
F-SecureTrojan.TR/Dldr.Agent.dsfrp
TrendMicroBackdoor.MSIL.NANOCORE.USMANBQ21
McAfee-GW-EditionArtemis!Trojan
SophosMal/Generic-S (PUA)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
AviraTR/Dldr.Agent.dsfrp
MAXmalware (ai score=84)
KingsoftWin32.Heur.KVM019.a.(kcloud)
MicrosoftTrojan:MSIL/Tnega.SS!MTB
GridinsoftTrojan.Win32.Downloader.sa
ArcabitTrojan.Generic.D22B6844
ZoneAlarmHEUR:Backdoor.MSIL.NanoBot.gen
GDataTrojan.GenericKD.36399172
CynetMalicious (score: 85)
AhnLab-V3PUP/Win32.RL_Generic.C4347663
McAfeeArtemis!6ECB42A8B146
MalwarebytesTrojan.FakeSig.Generic
PandaTrj/GdSda.A
TrendMicro-HouseCallBackdoor.MSIL.NANOCORE.USMANBQ21
RisingBackdoor.NanoBot!8.28C (CLOUD)
IkarusTrojan-Downloader.MSIL.Agent
FortinetMSIL/Agent.HLN!tr.dldr
AVGWin32:DangerousSig [Trj]

How to remove Trojan:MSIL/Tnega.SS!MTB?

Trojan:MSIL/Tnega.SS!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment