Trojan

Trojan:Win32/Tnega.PL!MTB malicious file

Malware Removal

The Trojan:Win32/Tnega.PL!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Tnega.PL!MTB virus can do?

  • Expresses interest in specific running processes
  • Unconventionial language used in binary resources: Serbian (Cyrillic)
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan:Win32/Tnega.PL!MTB?


File Info:

crc32: F8CB20B1
md5: 34efbd9928b8b0eae8c4f17239741e37
name: 34EFBD9928B8B0EAE8C4F17239741E37.mlw
sha1: fbb38c29a47cbc677bf7ac28ed63f0d17c48b91a
sha256: 5a681615e72cb6e7570297d7ddf3a52966965924519ff73154591c60aceec350
sha512: 03b22083180570488fc7752f1f425d7ec1781bad0f45b355cc2c7c88b5009ef3f175844db305b4ded5bbc736cf91159703cc3e035172432cf650e77251ddc2a6
ssdeep: 6144:XTgZauG+T/heuWVZeGlevNRDru+dj3qPHsk+sx9OAjeO+uCvXJ/ynHc54IhLWm9:XeauG+T//Ji+cBnC
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright 2019 ASUSTeK Computer Inc.
InternalName: ASUS Update
FileVersion: 1.3.107.31
CompanyName: ASUSTeK Computer Inc.
PrivateBuild:
ProductName: ASUS Update
ProductVersion: 1.3.107.31
FileDescription: ASUS Update
OriginalFilename: AsusUpdate.exe
Translation: 0x0409 0x04b0

Trojan:Win32/Tnega.PL!MTB also known as:

BkavW32.AIDetectVM.malware1
MicroWorld-eScanTrojan.GenericKD.35295378
FireEyeGeneric.mg.34efbd9928b8b0ea
CAT-QuickHealTrojan.Woreflint
Qihoo-360Generic/HEUR/QVM10.2.60C7.Malware.Gen
McAfeeArtemis!34EFBD9928B8
AegisLabTrojan.Win32.Malicious.4!c
SangforMalware
CrowdStrikewin/malicious_confidence_70% (D)
BitDefenderTrojan.GenericKD.35295378
K7GWTrojan ( 004f31091 )
K7AntiVirusTrojan ( 004f31091 )
BitDefenderThetaGen:NN.ZexaF.34634.pu0@aqczMbhP
CyrenW32/Trojan.FJMI-8275
SymantecTrojan Horse
ESET-NOD32Win32/Agent.TJS
APEXMalicious
AvastWin32:Trojan-gen
AlibabaTrojan:Win32/Tnega.e40fc624
ViRobotTrojan.Win32.Z.Agent.257536.LA
Ad-AwareTrojan.GenericKD.35295378
EmsisoftTrojan.GenericKD.35295378 (B)
F-SecureTrojan.TR/Agent.ofida
McAfee-GW-EditionRDN/GenericS
SophosMal/Generic-S
IkarusTrojan.Inject
WebrootW32.Trojan.Gen
AviraTR/Agent.ofida
MAXmalware (ai score=85)
MicrosoftTrojan:Win32/Tnega.PL!MTB
ArcabitTrojan.Generic.D21A9092
GDataTrojan.GenericKD.35295378
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.35295378
MalwarebytesTrojan.Crypt
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002H0CKM20
RisingTrojan.Generic@ML.90 (RDML:8kPCPSXSeaSsvdG8O+UkpQ)
eGambitUnsafe.AI_Score_58%
FortinetMalicious_Behavior.SB
AVGWin32:Trojan-gen
Cybereasonmalicious.9a47cb
Paloaltogeneric.ml

How to remove Trojan:Win32/Tnega.PL!MTB?

Trojan:Win32/Tnega.PL!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment