Malware

Tedy.166309 information

Malware Removal

The Tedy.166309 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Tedy.166309 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Authenticode signature is invalid

How to determine Tedy.166309?


File Info:

name: BF18707AC81BD212D501.mlw
path: /opt/CAPEv2/storage/binaries/b031ab53b4ac46fe4979539c862284cd023e6526e07d45164093c61feb608066
crc32: FEF4E3A6
md5: bf18707ac81bd212d501e13cdc2c77d5
sha1: 9a705037850d9c4232f46b23c864ecf84e02a0ca
sha256: b031ab53b4ac46fe4979539c862284cd023e6526e07d45164093c61feb608066
sha512: d99ada1e3ce58f8ffa6f9b8842d98f14e13ffff2fa62335358b2bc66005ff1678c1155662d6c966c61481ae74956a5bd6046d4358cdd3abc12786f4e52fc99d5
ssdeep: 6144:NxFSXgvzv1q8LvErkX8/hCOx11pUvXQfqQonjeDC9C3xBFVB8mLrHlmPD9BlTDgv:5Nv1qvr68c/fljezBNOmLrHoD97PZkF
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CFA422931185D803EBA11731CF90B76E57787D8122721FCBABD4BFB975329A0EA11326
sha3_384: a645bbcffc71a69399152730e39c079f0c7a46005f1b35fc34649a56a5a895251c3478ffc8433c4b3b85083f8116dfbc
ep_bytes: 558bec81ec20020000565733ff680180
timestamp: 2021-09-25 21:56:18

Version Info:

Comments: Outrap219 Strandedness
CompanyName: Hyldendes159 Oneirocriticism Diskettestrelserne
FileDescription: unconformed Cuppens Gauzed
FileVersion: 31.31.17
LegalCopyright: Kommenens211 cartogrammes
LegalTrademarks: Chionablepsia LYMPHADENOMAS PLSEFABRIKANTER halvbrdre
ProductName: Konomien Dubbingers
Translation: 0x0409 0x04e4

Tedy.166309 also known as:

LionicTrojan.Win32.GuLoader.a!c
MicroWorld-eScanGen:Variant.Tedy.166309
McAfeeRDN/Quasar
CylanceUnsafe
ZillyaDownloader.GuLoader.Win32.1286
SangforDownloader.Win32.Leonem.V0jb
K7AntiVirusTrojan ( 005957ed1 )
AlibabaTrojanDownloader:Win32/Leonem.1427b81c
K7GWTrojan ( 005957ed1 )
CyrenW32/ABRisk.INZC-0154
Elasticmalicious (high confidence)
ESET-NOD32NSIS/Injector.BAT
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Downloader.Guloader-9957395-0
KasperskyHEUR:Trojan.NSIS.Agent.gen
BitDefenderGen:Variant.Tedy.166309
AvastWin32:Evo-gen [Trj]
TencentWin32.Trojan-Downloader.Guloader.Yolw
Ad-AwareGen:Variant.Tedy.166309
EmsisoftGen:Variant.Tedy.166309 (B)
ComodoMalware@#3l053e1xy04qm
VIPREGen:Variant.Tedy.166309
TrendMicroTROJ_GEN.R002C0DGL22
McAfee-GW-EditionRDN/Quasar
Trapminesuspicious.low.ml.score
FireEyeGen:Variant.Tedy.166309
SophosMal/Generic-S
GDataGen:Variant.Tedy.166309
WebrootW32.Trojan.Gen
GoogleDetected
AviraTR/AD.Nekark.dxcpb
KingsoftWin32.Troj.Generic.jm.(kcloud)
MicrosoftTrojan:Win32/Leonem
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Wacatac.C5206148
VBA32TrojanDownloader.GuLoader
ALYacGen:Variant.Tedy.166309
MAXmalware (ai score=80)
MalwarebytesTrojan.GuLoader
TrendMicro-HouseCallTROJ_GEN.R002C0DGL22
YandexTrojan.Igent.bYmyW0.4
IkarusTrojan.NSIS.Agent
FortinetW32/BAT!tr
AVGWin32:Evo-gen [Trj]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Tedy.166309?

Tedy.166309 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment