Trojan

About “Trojan:Win32/Tiggre” infection

Malware Removal

The Trojan:Win32/Tiggre is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Tiggre virus can do?

  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Trojan:Win32/Tiggre?


File Info:

name: A7E571A5A53D317B7671.mlw
path: /opt/CAPEv2/storage/binaries/da7b354d1efed36ecc88b8f79b4d7cd9d80f2a466c9d1b4d812d3aa4edd11918
crc32: 6FF69CB0
md5: a7e571a5a53d317b767128a0e6150110
sha1: 66bdf95cb65a120c2d298ad2d2db097d7b3448b4
sha256: da7b354d1efed36ecc88b8f79b4d7cd9d80f2a466c9d1b4d812d3aa4edd11918
sha512: 905b4209266306bc111466b3c509f56f227a18d1e3409dbfe1c1c190245b3cfa502a33e83bbbfa75040f8435a9cf61df0a3e2f4828527713ce157072ae65e8ff
ssdeep: 12288:GTb97WpNvGIaUDyt4t6jiLvbAxfdC5chbIZq9MStT0o/V5WsxwcPcSwu0:kZ7AaUDytXcvbwfomUZwlxwZy
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T152356C6276A34833C5E21A389D4BB6A459F7BE102EE859C72BF53C4D3F35651382D283
sha3_384: 671b3c14b1ed070141a09457f1e939f1dba1afff14f82609cdf2a4c409fde2f3cf0dc4312a069fde712c8c8272c9773e
ep_bytes: 558bec83c4f053b80c504b00e81b0bf5
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Trojan:Win32/Tiggre also known as:

LionicTrojan.Win32.Stealer.i!c
MicroWorld-eScanTrojan.GenericKD.49302433
FireEyeTrojan.GenericKD.49302433
ALYacTrojan.GenericKD.49302433
VIPRETrojan.Agent.FYLC
K7AntiVirusTrojan ( 005952791 )
AlibabaTrojanPSW:Win32/Stealer.14b9a5c9
K7GWTrojan ( 005952791 )
CyrenW32/Injector.AZX.gen!Eldorado
SymantecScr.MalPbs!gen1
ESET-NOD32a variant of Win32/Injector.ERWA
APEXMalicious
KasperskyHEUR:Trojan-PSW.Win32.Stealer.gen
BitDefenderTrojan.GenericKD.49302433
AvastWin32:PWSX-gen [Trj]
TencentWin32.Trojan-qqpass.Qqrob.Lpld
Ad-AwareTrojan.GenericKD.49302433
EmsisoftTrojan.GenericKD.49302433 (B)
DrWebTrojan.DownLoader44.65070
McAfee-GW-EditionBehavesLike.Win32.Infected.th
SophosMal/Generic-S
GDataWin32.Trojan.PSE1.KU1WFU
WebrootW32.Trojan.Gen
AviraTR/AD.DelfDownloader.mwfxh
Antiy-AVLTrojan/Win32.Wacatac
ArcabitTrojan.Generic.D2F04BA1
MicrosoftTrojan:Win32/Tiggre
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win.FCVN.R502870
McAfeeGenericRXAA-AA!A7E571A5A53D
VBA32BScope.TrojanPSW.Fareit
MalwarebytesMalware.AI.1395577494
TrendMicro-HouseCallTROJ_GEN.R002H0DG422
RisingBackdoor.Remcos!8.B89E (CLOUD)
YandexTrojan.Igent.bYiB7y.1
IkarusTrojan.Inject
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Injector.EQPQ!tr
AVGWin32:PWSX-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:Win32/Tiggre?

Trojan:Win32/Tiggre removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment