Malware

Tedy.150498 removal

Malware Removal

The Tedy.150498 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Tedy.150498 virus can do?

  • CAPE extracted potentially suspicious content
  • .NET file is packed/obfuscated with Confuser
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Tedy.150498?


File Info:

name: 1EBF98AD59C65DEFCD15.mlw
path: /opt/CAPEv2/storage/binaries/8950f3bb406144ccd4d6bec987f1c2b6d4e8ce32678b37bb0087fb5282655b0b
crc32: 7241574E
md5: 1ebf98ad59c65defcd15bceb4321def1
sha1: dc76960409f4d7cdc716f007893b0e194a2ef979
sha256: 8950f3bb406144ccd4d6bec987f1c2b6d4e8ce32678b37bb0087fb5282655b0b
sha512: 551203c775ff5a971427644ecd6cf995e5365ed9e51a0e412e046936264e5fefe39fdbce2b253e302369cc36c5423d0625b1c86a5b972477b4d8c48589e5bfcc
ssdeep: 96:Z7ybHuXUpfsPVcWBrvSnlafmtTJ3xSDboH/vW1lJSmzNt:ZZEp0N79vSlafCWo/vW3JSg
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T124D1C600A3E44B33EAB64B395CB783901376FAA2AC37CB9D19DC124B5826B504976F31
sha3_384: af939a05f498b0b3ce81c4f30de158f83956dd2e612c5dd8ed1cb8eac1f1fc8ebd334e7a7ea00775b445e6b013bb3585
ep_bytes: ff250020400000000000000000000000
timestamp: 2086-07-03 23:55:28

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName: Microsoft
FileDescription: MC Grabber
FileVersion: 1.0.0.0
InternalName: MC Grabber.exe
LegalCopyright: Copyright © Microsoft 2022
LegalTrademarks:
OriginalFilename: MC Grabber.exe
ProductName: MC Grabber
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Tedy.150498 also known as:

BkavW32.AIDetectNet.01
LionicTrojan.Win32.Tedy.4!c
MicroWorld-eScanGen:Variant.Tedy.150498
ALYacGen:Variant.Tedy.150498
CylanceUnsafe
SangforInfostealer.Msil.Agent.V9fw
K7AntiVirusPassword-Stealer ( 005960811 )
BitDefenderGen:Variant.Tedy.150498
K7GWPassword-Stealer ( 005960811 )
CyrenW32/MSIL_Troj.NT.gen!Eldorado
SymantecTrojan.Gen.MBT
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of MSIL/PSW.OnLineGames.CDZ
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
AlibabaTrojan:MSIL/Mmorpg.7c8b37b9
RisingStealer.OnLineGames!8.131 (CLOUD)
Ad-AwareGen:Variant.Tedy.150498
SophosMal/Generic-S
VIPREGen:Variant.Tedy.150498
TrendMicroTROJ_GEN.R067C0PIR22
McAfee-GW-EditionRDN/PWS-Mmorpg.gen
FireEyeGen:Variant.Tedy.150498
EmsisoftGen:Variant.Tedy.150498 (B)
IkarusTrojan.MSIL.Crypt
GDataGen:Variant.Tedy.150498
AviraHEUR/AGEN.1234787
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
McAfeeRDN/PWS-Mmorpg.gen
MAXmalware (ai score=88)
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R067C0PIR22
TencentWin32.Trojan.Agen.Najl
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.188459918.susgen
FortinetPossibleThreat
AVGWin32:Trojan-gen
AvastWin32:Trojan-gen
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Tedy.150498?

Tedy.150498 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment