Malware

Tedy.154416 removal guide

Malware Removal

The Tedy.154416 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Tedy.154416 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Guard pages use detected – possible anti-debugging.
  • Dynamic (imported) function loading detected
  • Enumerates the modules from a process (may be used to locate base addresses in process injection)
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Tedy.154416?


File Info:

name: 7BFB96FBD4C9E7AF4500.mlw
path: /opt/CAPEv2/storage/binaries/bd37b48194e71dbe83e24c7751762857a23c159702c5c3e372aff64b8299b154
crc32: 1CE24E84
md5: 7bfb96fbd4c9e7af4500c633a5edb1bc
sha1: a9948ed4d798998d9247c6e0ae33553e85740d1e
sha256: bd37b48194e71dbe83e24c7751762857a23c159702c5c3e372aff64b8299b154
sha512: 0497c5eedf704003476eb8b652cfe722f6b35c9398bcbb3eb628b800779d141a804bca6e33fa9d3906ca0432626c9248fc0888b61e2dd95ec18fd6024bdae45b
ssdeep: 96:dXpg2v7odEaBI/fd8sEF1oiCRzGssGi11p1jENL+MzNt:d57TodEqI/l8si1VMzxst1hEA2
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E0F1E86393E88776DDBA0B32CE6356811735E345CDA3AE5F59C441158DE33080BA3A63
sha3_384: 9f0ada2e4fbf05be5e643afffb792bad822ae9513b0d19fe07fc39c6ce7c0a5e69cf6031315a60c5c656a6b467818da4
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-06-27 01:44:40

Version Info:

Translation: 0x0000 0x04b0
FileDescription: @PromisDebug
FileVersion: 1.0.0.0
InternalName: PromisDebug.exe
LegalCopyright: Copyright © 2012
OriginalFilename: PromisDebug.exe
ProductName: @PromisDebug
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Tedy.154416 also known as:

BkavW32.AIDetectNet.01
MicroWorld-eScanGen:Variant.Tedy.154416
FireEyeGen:Variant.Tedy.154416
McAfeeArtemis!7BFB96FBD4C9
MalwarebytesMalware.AI.2376312672
SangforBackdoor.Win32.Agent.Vqgi
K7AntiVirusRiskware ( 0040eff71 )
K7GWRiskware ( 0040eff71 )
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_GEN.R002H0CGB22
KasperskyVHO:Backdoor.MSIL.Phny.gen
BitDefenderGen:Variant.Tedy.154416
AvastWin32:Malware-gen
Ad-AwareGen:Variant.Tedy.154416
VIPREGen:Variant.Tedy.154416
McAfee-GW-EditionArtemis
Trapminemalicious.moderate.ml.score
EmsisoftGen:Variant.Tedy.154416 (B)
GDataGen:Variant.Tedy.154416
Antiy-AVLTrojan/Generic.ASMalwS.4D9C
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
ALYacGen:Variant.Tedy.154416
MAXmalware (ai score=80)
CylanceUnsafe
APEXMalicious
RisingBackdoor.Phny!8.EB9E (CLOUD)
MaxSecureTrojan.Malware.300983.susgen
FortinetPossibleThreat
AVGWin32:Malware-gen

How to remove Tedy.154416?

Tedy.154416 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment