Malware

Tedy.113707 removal

Malware Removal

The Tedy.113707 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Tedy.113707 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Unconventionial language used in binary resources: Chinese (Traditional)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is likely packed with VMProtect
  • Authenticode signature is invalid

How to determine Tedy.113707?


File Info:

name: A814903F8F0893253364.mlw
path: /opt/CAPEv2/storage/binaries/9f37e3abbf670bd6b6777e21af7cea844ac54a359293ff6ebc5c43482695d878
crc32: 1A2F1D88
md5: a814903f8f089325336457745373b57c
sha1: 1d76bc2074dd680c18caf0108882b5a4563ddebf
sha256: 9f37e3abbf670bd6b6777e21af7cea844ac54a359293ff6ebc5c43482695d878
sha512: e1fb18467260f1bcca6b1e0dd877dda40e1d84d0e525684b16897485e27413ca06c8049a18ae138145ccb2e35f7b8c242cc35a049446e1fc097dc97d8076afb6
ssdeep: 393216:wuQOckMDgG7HctENUGzHIC0ORrBTyjM4:wGGg0UEpg49+M4
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14CF63363992BA857C5FC00BD1B9C7FC8A6EE9EB2A4012473503AB4D45E371E23C8D55B
sha3_384: 283e4bd3177e7a397ff0d9de787b6ff401ee6402566253901005b20d96689849e75e7d6a6297e68e027e74bdbc841de5
ep_bytes: eb081d96df0000000000e97aa4ffff83
timestamp: 2022-09-21 02:59:02

Version Info:

CompanyName: TODO:
FileDescription: Microsoft
FileVersion: 1.0.0.1
InternalName: svhost.exe
LegalCopyright: TODO: (c) . 著作權所有,並保留一切權利。
OriginalFilename: svhost.exe
ProductName: TODO:
ProductVersion: 1.0.0.1
Translation: 0x0404 0x04b0

Tedy.113707 also known as:

BkavW32.AIDetect.malware2
MicroWorld-eScanGen:Variant.Tedy.113707
FireEyeGeneric.mg.a814903f8f089325
ALYacGen:Variant.Tedy.113707
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 7000001c1 )
BitDefenderGen:Variant.Tedy.113707
K7GWTrojan ( 7000001c1 )
ArcabitTrojan.Tedy.D1BC2B
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Packed.VMProtect.AB
CynetMalicious (score: 99)
APEXMalicious
KasperskyHEUR:Trojan.Win32.Generic
RisingTrojan.Generic!8.C3 (TFE:5:9iJlYDIuEJJ)
Ad-AwareGen:Variant.Tedy.113707
EmsisoftGen:Variant.Tedy.113707 (B)
VIPREGen:Variant.Tedy.113707
McAfee-GW-EditionBehavesLike.Win32.Generic.wc
Trapminemalicious.high.ml.score
SophosMal/VMProtBad-A
IkarusTrojan.Win32.VMProtect
AviraTR/Black.Gen2
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Variant.Tedy.113707
GoogleDetected
AhnLab-V3Packed/Win.GV.C5021958
Acronissuspicious
McAfeePacked-GV!A814903F8F08
MAXmalware (ai score=81)
MalwarebytesTrojan.MalPack.Generic
SentinelOneStatic AI – Malicious PE
BitDefenderThetaGen:NN.ZexaF.34682.@R0@aS8ZyNkP
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.f8f089
AvastWin32:Evo-gen [Trj]

How to remove Tedy.113707?

Tedy.113707 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment