Malware

Tedy.1602 removal instruction

Malware Removal

The Tedy.1602 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Tedy.1602 virus can do?

  • Presents an Authenticode digital signature
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Tedy.1602?


File Info:

name: B9B123D63793A2D45B45.mlw
path: /opt/CAPEv2/storage/binaries/84783824b806b1f72145c2555b51ff10523741745528f23422f247d20cdef34d
crc32: E074A4BC
md5: b9b123d63793a2d45b451a334c8cae6a
sha1: ff42de2900e763d700b194bfa9bd6773640e3839
sha256: 84783824b806b1f72145c2555b51ff10523741745528f23422f247d20cdef34d
sha512: 25aeabf7cabf06fc72ff28a60cfd45c9dc68f9c81e2ab7c18b70e7dab97191b7d06d555cbb6f884fba42747196188dd39afefd78a96a11eeb011963a041bc395
ssdeep: 49152:5BQCKMN7pXRKNnpCZqhaK6zbfqdl5Dzx9ZqhaK6zbfqdl:/9NnNxIDF9x
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T136E507207BEF9212DCB256748F7D969295707C411BB0C6DB2290766DCE33688A93F723
sha3_384: 41237884f1951be7b414d73096c8228098c4fca860a200c2a5fdefde7032b907e819a7b071f37bf59722b1637533f38c
ep_bytes: 4883ec28e8870200004883c428e99efd
timestamp: 2013-10-08 13:07:54

Version Info:

CompanyName: Oracle Corporation
FileDescription: Java(TM) Platform SE binary
FileVersion: 7.0.450.18
Full Version: 1.7.0_45-b18
InternalName: java-rmi
LegalCopyright: Copyright © 2013
OriginalFilename: java-rmi.exe
ProductName: Java(TM) Platform SE 7 U45
ProductVersion: 7.0.450.18
Translation: 0x0000 0x04b0

Tedy.1602 also known as:

LionicTrojan.Win32.Tedy.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Tedy.1602
FireEyeGeneric.mg.b9b123d63793a2d4
McAfeeArtemis!B9B123D63793
CylanceUnsafe
SangforTrojan.Win32.Save.a
Cybereasonmalicious.63793a
CyrenW64/Ipamor.W.gen!Eldorado
SymantecTrojan.Gen.MBT
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Malware.Dqan-9885474-0
BitDefenderGen:Variant.Tedy.1602
AvastWin64:Malware-gen
Ad-AwareGen:Variant.Tedy.1602
EmsisoftGen:Variant.Tedy.1602 (B)
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Tedy.1602
Antiy-AVLGrayWare/Win32.Tampering.3da7
GridinsoftRansom.Win64.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
ALYacGen:Variant.Tedy.1602
MAXmalware (ai score=82)
TrendMicro-HouseCallTROJ_GEN.R03BH0CL221
IkarusTrojan.Msil
MaxSecureTrojan.Malware.121218.susgen
FortinetW64/Agent.FBB1!tr
AVGWin64:Malware-gen
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Tedy.1602?

Tedy.1602 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment