Malware

Tedy.30363 (file analysis)

Malware Removal

The Tedy.30363 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Tedy.30363 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Dynamic (imported) function loading detected
  • Unconventionial language used in binary resources: Japanese
  • Authenticode signature is invalid

How to determine Tedy.30363?


File Info:

name: 6DF73361B9535FFE5572.mlw
path: /opt/CAPEv2/storage/binaries/9ef1e176a3180a2c3f58fd763494c170ff2ef9f134e77000e3a520fdfb2b6dda
crc32: 0B64ED6F
md5: 6df73361b9535ffe5572d03e6ab66f04
sha1: b0ccd305121360f4204cf85bfc545fe4dc568648
sha256: 9ef1e176a3180a2c3f58fd763494c170ff2ef9f134e77000e3a520fdfb2b6dda
sha512: 49382de8cab88b2571c6cdc54acb45a43b20255154f6c4d48ef19a6a1d19ab464ed789a77c08f5bcd342e41852862cb6c4691001a82a3db50dc2d452c56762ad
ssdeep: 12288:npC2HlxphSpMMDaK57PYIRhRIRYzRlRGyRFbRprrvXBaU8PvpKvk7Zszs:n63uYdLHD5IU8PvIvb
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E4D44A17FA50F408F51E403019D66256AE2AAC3A06097D8BF7B0BF2DAA765C395F431F
sha3_384: 7d2a645794a9e4bc7a048c3b71d0c95438743a2b0413454e4561d8982ad0b40e7fbdbc4778cbed7dfe08c719ba7463ad
ep_bytes: 6810374000e8f0ffffff000000000000
timestamp: 2021-10-05 04:08:48

Version Info:

Translation: 0x0411 0x04b0
CompanyName: Company
ProductName: 帳票出力
FileVersion: 1.00
ProductVersion: 1.00
InternalName: Us1R520
OriginalFilename: Us1R520.exe

Tedy.30363 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Tedy.4!c
MicroWorld-eScanGen:Variant.Tedy.30363
FireEyeGen:Variant.Tedy.30363
McAfeeArtemis!6DF73361B953
ArcabitTrojan.Tedy.D769B
TrendMicro-HouseCallTROJ_GEN.R002H09KP21
BitDefenderGen:Variant.Tedy.30363
AvastWin32:Malware-gen
Ad-AwareGen:Variant.Tedy.30363
EmsisoftGen:Variant.Tedy.30363 (B)
McAfee-GW-EditionBehavesLike.Win32.Trojan.jh
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Tedy.30363
VBA32BScope.Trojan.Hesv
ALYacGen:Variant.Tedy.30363
MAXmalware (ai score=89)
APEXMalicious
YandexTrojan.GenAsa!44wR08R/t7Q
FortinetW32/PossibleThreat
AVGWin32:Malware-gen

How to remove Tedy.30363?

Tedy.30363 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment