Malware

Tedy.1842 information

Malware Removal

The Tedy.1842 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Tedy.1842 virus can do?

  • Dynamic (imported) function loading detected
  • Possible date expiration check, exits too soon after checking local time
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics
  • CAPE detected the Mercurial malware family

How to determine Tedy.1842?


File Info:

name: 5A9D05628271A53F2727.mlw
path: /opt/CAPEv2/storage/binaries/e4b50a55ac65535846e678dcd48cae31105b7a283ea3309b9255996432d66ec1
crc32: F26493AE
md5: 5a9d05628271a53f2727e083b6711be6
sha1: 2eb932e2c34e96f557e97dba0a735f071f060420
sha256: e4b50a55ac65535846e678dcd48cae31105b7a283ea3309b9255996432d66ec1
sha512: 8944a2c7a8f921bd05821a614dbfaa0bbf10412632308eddb05dbd316d6f540718700d5b42ec6e5087d0c465d2631add784c746584a16af343f29021ab57eba7
ssdeep: 3072:LtQ6+BKkA5P+jAcDwsy36rtTQTQqr5x7URVBjv8YoyIY+J:Ly6+TC+jAce3y1ri58jv8YoyIY
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T106A4CAC4671662B8DFE73CF1536B582A86131DA1002142362376FE6683FE35BDD2B1AD
sha3_384: 9d5babb6aa1031ed32807dae89aa6be56c68892214434bcbe761d8da81b648799423a6ee66b63c97134317bc82fe1f21
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-03-25 16:25:40

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: Synapse X.exe
LegalCopyright:
OriginalFilename: Synapse X.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

Tedy.1842 also known as:

BkavW32.AIDetectNet.01
MalwarebytesBackdoor.NanoCore
SangforSuspicious.Win32.Save.a
BitDefenderGen:Variant.Tedy.1842
CyrenW32/MSIL_Agent.BJO.gen!Eldorado
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Spy.Agent.DJV
APEXMalicious
CynetMalicious (score: 100)
MicroWorld-eScanGen:Variant.Tedy.1842
RisingTrojan.Generic@AI.96 (RDMK:cmRtazqPZcgzD6UWB4NuegXWMbW+)
Ad-AwareGen:Variant.Tedy.1842
SophosGeneric ML PUA (PUA)
F-SecureHeuristic.HEUR/AGEN.1202476
FireEyeGeneric.mg.5a9d05628271a53f
EmsisoftGen:Variant.Tedy.1842 (B)
GDataGen:Variant.Tedy.1842
AviraHEUR/AGEN.1202476
ArcabitTrojan.Tedy.D732
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
AhnLab-V3Trojan/Win.Generic.C4555074
ALYacGen:Variant.Tedy.1842
MAXmalware (ai score=81)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
BitDefenderThetaGen:NN.ZemsilF.34606.Dm0@auNDDEi

How to remove Tedy.1842?

Tedy.1842 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment