Malware

Tedy.191931 (file analysis)

Malware Removal

The Tedy.191931 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Tedy.191931 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Russian
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Tedy.191931?


File Info:

name: D167F3CC6367AD94EECC.mlw
path: /opt/CAPEv2/storage/binaries/e2df64a7a5682585ba924189efa8172185329450e00c18c8fbc6cf27b4c6f390
crc32: C5D75F74
md5: d167f3cc6367ad94eecc38a5c5d6a3fa
sha1: 66c84c9c93a5fdeb50e2ecb9ccf0f6b085269205
sha256: e2df64a7a5682585ba924189efa8172185329450e00c18c8fbc6cf27b4c6f390
sha512: 23996bcde7781d56a0d1ed578ea44dac48317d7cc76e60dd830ad897567246b2a9524cbcae8d344c99e3db9187c94ff7d3cbb9c962d55bac27385d292031853f
ssdeep: 98304:pAI+ClauFCn1RcyJzFmDwEh9ujw8dpdpoXqUMuUm8OM:itCIvD3JREKTPpoXmDT
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T145063336D7C2C63AD5621934854BD5B2F03DFF00973851CFE1E8492DAE3329AAB6D11A
sha3_384: b4847964211dba0444deefccb177bcb5ded6beec902ab024338a15ea49a368e27638deec945b142bb4a2496099777dcf
ep_bytes: 558bec83c4f0b888534200e824f2fdff
timestamp: 1992-06-19 22:22:17

Version Info:

Comments:
CompanyName: SWITIPS GAMES
FileDescription: SWTIPS LAUNCHER 1.00 Installation
FileVersion: 1.00
LegalCopyright: SWITIPS GAMES
Translation: 0x0409 0x04e4

Tedy.191931 also known as:

BkavW32.AIDetect.malware2
MicroWorld-eScanGen:Variant.Tedy.191931
FireEyeGen:Variant.Tedy.191931
APEXMalicious
CynetMalicious (score: 100)
BitDefenderGen:Variant.Tedy.191931
EmsisoftGen:Variant.Tedy.191931 (B)
VIPREGen:Variant.Tedy.191931
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Tedy.191931
ALYacGen:Variant.Tedy.191931
MAXmalware (ai score=80)
MaxSecureTrojan-Ransom.Win32.Crypmod.zfq
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Tedy.191931?

Tedy.191931 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment