Malware

Tedy.30781 removal

Malware Removal

The Tedy.30781 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Tedy.30781 virus can do?

  • Presents an Authenticode digital signature
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Binary compilation timestomping detected

How to determine Tedy.30781?


File Info:

name: 0A3A75C474B5AB5D9C30.mlw
path: /opt/CAPEv2/storage/binaries/0363b9d96b02c6388d1c1fcbacf351692d16e69413cad65fea968310c21f3d69
crc32: 9DF64E0F
md5: 0a3a75c474b5ab5d9c309643c2ea7751
sha1: 920c8413f655c3924f9706c6bdab625de29c2504
sha256: 0363b9d96b02c6388d1c1fcbacf351692d16e69413cad65fea968310c21f3d69
sha512: 5e9759bc02705dbd572cb1f3979389402a339700534037dcd4ecbecc5dd33b960501af8d152ed8263b9ee8e0d7b918f1d08a9d4d50927d2e485f7cfc3226fd60
ssdeep: 768:FKm8t1P2DbEipaKK/j27n5pl0XxHiQk6BwkG51KIF2uhL0/9HqJDnaF3kcyH83hC:FKmGP2DbETxa9ExkF2uhSqSjyc3hl12
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T150A32875B6986012E996137C8041F347EB7BBCD9BE6A211040DF330D1EFAB85E58C6E9
sha3_384: c8c9da09fb745ca2fb14b2258bbe1b46b49ac02b645965212c99af7fa21cf0338221f0712711c044f556f444c054a5be
ep_bytes: 40534883ec20488bd9e88a050000488b
timestamp: 2100-03-02 06:33:42

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Client Server Runtime Process
FileVersion: 10.0.17134.1 (WinBuild.160101.0800)
InternalName: CSRSS.Exe
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: CSRSS.Exe
ProductName: Microsoft® Windows® Operating System
ProductVersion: 10.0.17134.1
Translation: 0x0409 0x04b0

Tedy.30781 also known as:

LionicTrojan.Win32.Tedy.4!c
MicroWorld-eScanGen:Variant.Tedy.30781
FireEyeGen:Variant.Tedy.30781
ALYacGen:Variant.Tedy.30781
CylanceUnsafe
CyrenW64/Ipamor.CZ.gen!Eldorado
ClamAVWin.Malware.Mepaow-6725393-0
BitDefenderGen:Variant.Tedy.30781
Ad-AwareGen:Variant.Tedy.30781
McAfee-GW-EditionArtemis
EmsisoftGen:Variant.Tedy.30781 (B)
IkarusTrojan.Dropper
GDataGen:Variant.Tedy.30781
Antiy-AVLTrojan/Generic.ASVirus.302
ArcabitTrojan.Tedy.D783D
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
McAfeeArtemis!0A3A75C474B5
MAXmalware (ai score=84)
FortinetW64/Bulz.9212!tr

How to remove Tedy.30781?

Tedy.30781 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment