Malware

Tedy.114096 removal tips

Malware Removal

The Tedy.114096 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Tedy.114096 virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Tedy.114096?


File Info:

name: 93AFA718BDB2A7D20C86.mlw
path: /opt/CAPEv2/storage/binaries/04d1524f1b4fca49fa373d85cbbc72423303586d29feb0ae96eea71441629168
crc32: 5768B40C
md5: 93afa718bdb2a7d20c86663cc52fefba
sha1: 6d1b34ddd75c400ccaf9d4d988c15aea1a38d815
sha256: 04d1524f1b4fca49fa373d85cbbc72423303586d29feb0ae96eea71441629168
sha512: 1597490a441a996ce493054b33806fc29b4334e1ddfac393c6607cc4ea0428f1b116631ef385666c55e14b46b9bbbb1898e2a3dc9edbdde8906ac3464b57f0b9
ssdeep: 192:N/qEq9/FpuUbO0n0OQf8B5n6aC0tb9VqbsnNtuYzVoUReQfOk6Bcbit9QW57gz9D:NSEq9/F7bOe0Ousn6aCmBNtuqIuGN7S
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T162B270F5E654023BE5B50EB444930A30BD3BED9158219B2ADC8CBE660E3A2437571F2F
sha3_384: 9796d653919825e05234448b73d774e4081c0f3c8c6096c1dd12e4e0c2c20c2910695e72ae341921755df7deb5d3cf53
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-05-04 13:42:08

Version Info:

Translation: 0x0000 0x04b0
Comments: SCRABBLE®
CompanyName: funkitron, inc.
FileDescription: SCRABBLE®
FileVersion: 1.0.48.0
InternalName: Gynxrtosg.exe
LegalCopyright: Copyright © 2003 - 2004 funkitron, inc.
LegalTrademarks: HASBRO and its logo are trademarks of Hasbro and are used with permission. SCRABBLE, the distinctive game board and letter tiles, and all associated logos are trademarks of Hasbro in the United States and Canada and are used with permission. © 2003 Hasbro. All Rights Reserved.
OriginalFilename: Gynxrtosg.exe
ProductName: SCRABBLE®
ProductVersion: 1.0.48.0
Assembly Version: 1.0.48.0

Tedy.114096 also known as:

BkavW32.AIDetectNet.01
Elasticmalicious (high confidence)
DrWebTrojan.DownloaderNET.400
MicroWorld-eScanGen:Variant.Tedy.114096
FireEyeGen:Variant.Tedy.114096
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
McAfeeRDN/Generic Downloader.x
CylanceUnsafe
CyrenW32/MSIL_Troj.CCN.gen!Eldorado
SymantecMSIL.Downloader!gen7
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.LQY
APEXMalicious
KasperskyHEUR:Trojan-Downloader.MSIL.Wagex.gen
BitDefenderGen:Variant.Tedy.114096
AvastWin32:DropperX-gen [Drp]
Ad-AwareGen:Variant.Tedy.114096
VIPREGen:Variant.Tedy.114096
McAfee-GW-EditionRDN/Generic Downloader.x
EmsisoftGen:Variant.Tedy.114096 (B)
SentinelOneStatic AI – Suspicious PE
Antiy-AVLTrojan/Generic.ASMalwS.813F
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ArcabitTrojan.Tedy.D1BDB0
GDataGen:Variant.Tedy.114096
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.C5109394
ALYacGen:Variant.Tedy.114096
MAXmalware (ai score=81)
MalwarebytesTrojan.Downloader.MSIL.Generic
IkarusTrojan-Downloader.MSIL.Agent
FortinetMSIL/Agent.LQU!tr.dldr
AVGWin32:DropperX-gen [Drp]
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Tedy.114096?

Tedy.114096 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment