Malware

Tedy.288106 removal instruction

Malware Removal

The Tedy.288106 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Tedy.288106 virus can do?

  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Tedy.288106?


File Info:

name: 2EB8B3E96A602D099CC3.mlw
path: /opt/CAPEv2/storage/binaries/7978bd8994c5cdc6fdb62e71927dc19d842b25f9b03d8ad912cfd48102d8d9ae
crc32: F2304693
md5: 2eb8b3e96a602d099cc3c5bbc745de18
sha1: dacbe7193f8111565a7193e9dd7099ea7e7416a3
sha256: 7978bd8994c5cdc6fdb62e71927dc19d842b25f9b03d8ad912cfd48102d8d9ae
sha512: f216b8a979f99d334bdf569ed7ea3a7511c0aae010bd2b25536bd0ac492c5b90de9d2fa3523b8384100cd9c74b44287544f76ad81f7d9470268dd20971d4a84c
ssdeep: 6144:JW1CjdblyKL0g0kwsBdhcFsi4crztQkQdH:JVjBYG0gQsWsQ9zQdH
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T184549E87B7748221DB6805B168F7356C63F29FCB4B3B9685FE58A68F0C233614D5270A
sha3_384: c902945b7e34fc8754a3d2da4ed5f7d5594131a935a74a8bae0777acb9dac753cd6fb5f979b4f2199d193360b7a98b38
ep_bytes: ff250020400000000000000000000000
timestamp: 2023-02-09 23:01:58

Version Info:

Translation: 0x0000 0x04b0
FileDescription: WindowsApplication3
FileVersion: 1.0.0.0
InternalName: WindowsApplication3.exe
LegalCopyright: Copyright © 2023
OriginalFilename: WindowsApplication3.exe
ProductName: WindowsApplication3
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Tedy.288106 also known as:

Elasticmalicious (high confidence)
DrWebBackDoor.Bladabindi.3463
MicroWorld-eScanGen:Variant.Tedy.288106
FireEyeGeneric.mg.2eb8b3e96a602d09
McAfeeArtemis!2EB8B3E96A60
MalwarebytesGeneric.Trojan.Dropper.DDS
VIPREGen:Variant.Tedy.288106
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 004ddfea1 )
BitDefenderGen:Variant.Tedy.288106
K7GWTrojan ( 004ddfea1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZemsilF.36196.rq0@aiXpKOh
CyrenW32/ABRisk.OVDR-3745
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/TrojanDropper.Agent.CFC
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojan:MSIL/ATRAPS.04583c17
NANO-AntivirusTrojan.Win32.Bladabindi.juwjrq
RisingDropper.Agent!8.2F (CLOUD)
EmsisoftGen:Variant.Tedy.288106 (B)
F-SecureTrojan.TR/ATRAPS.Gen2
ZillyaDropper.Agent.Win32.526937
TrendMicroTROJ_GEN.R002C0WBD23
McAfee-GW-EditionArtemis!Trojan
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GoogleDetected
AviraTR/ATRAPS.Gen2
Antiy-AVLTrojan[Backdoor]/Win32.Bladabindi
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Tedy.D4656A
ZoneAlarmHEUR:Trojan.MSIL.Generic
GDataGen:Variant.Tedy.288106
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win.Agent.C5226210
VBA32TScope.Trojan.MSIL
ALYacGen:Variant.Tedy.288106
MAXmalware (ai score=89)
DeepInstinctMALICIOUS
Cylanceunsafe
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0WBD23
TencentWin32.Trojan.Generic.Rqil
IkarusTrojan-Dropper.MSIL.Agent
FortinetMSIL/GenKryptik.BVPX!tr
AVGWin32:Trojan-gen
Cybereasonmalicious.93f811
AvastWin32:Trojan-gen

How to remove Tedy.288106?

Tedy.288106 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment