Malware

What is “Tedy.41598”?

Malware Removal

The Tedy.41598 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Tedy.41598 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • At least one process apparently crashed during execution
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Tedy.41598?


File Info:

name: 45C9EF1CBA0E325ABAA3.mlw
path: /opt/CAPEv2/storage/binaries/b2981c16796df7fd9021fa9a05f2c73b5f6cacb3f388498d484ca2f58c7aaf23
crc32: E388A0FC
md5: 45c9ef1cba0e325abaa3e6a907f49470
sha1: 4e7a3a1956a642b91937e9129461b8b70b7c537c
sha256: b2981c16796df7fd9021fa9a05f2c73b5f6cacb3f388498d484ca2f58c7aaf23
sha512: d65282e169f527c04519053e8f2b3f832405ff378bc359cdea55d4247a0237c64cfe8e5efd57392e75da4e2c6f965af87a86421b2273edd5e161c2851ef269db
ssdeep: 24576:6eRZwEia1Z0f2okd88bt1uywPPZdvNn+CSQ9D:T/0f2t5wvNnEqD
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T142157C11BBD08031F2B76A3149B9A5721A7EF8626931CB5F23C8877D1E31781E93572B
sha3_384: 5f0755464bcdfce7f8bdfc09ecb0a3a46ad50b53cef97ffea62a3c296771f4f5c6395abfb0a15e6e3eac87f60c17b004
ep_bytes: e8dc030000e917feffffe82004000050
timestamp: 2021-02-19 13:31:40

Version Info:

0: [No Data]

Tedy.41598 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Tedy.4!c
Elasticmalicious (high confidence)
DrWebWin32.Siggen.16
MicroWorld-eScanGen:Variant.Tedy.41598
FireEyeGen:Variant.Tedy.41598
CAT-QuickHealTrojan.AgenFC.S20327787
ALYacGen:Variant.Tedy.41598
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.MUTVGDA
ClamAVWin.Malware.Generic-9839999-0
BitDefenderGen:Variant.Tedy.41598
AvastWin32:DropperX-gen [Drp]
Ad-AwareGen:Variant.Tedy.41598
EmsisoftGen:Variant.Tedy.41598 (B)
McAfee-GW-EditionArtemis
GDataGen:Variant.Tedy.41598
Antiy-AVLTrojan/Generic.ASMalwS.33162F9
ArcabitTrojan.Tedy.DA27E
MicrosoftTrojan:Win32/Wacatac.B!ml
McAfeeArtemis!45C9EF1CBA0E
MAXmalware (ai score=89)
VBA32Trojan.Click
MalwarebytesMalware.AI.58684513
TrendMicro-HouseCallTROJ_GEN.R002H09KP21
IkarusTrojan.SuspectCRC
FortinetW32/PossibleThreat
AVGWin32:DropperX-gen [Drp]

How to remove Tedy.41598?

Tedy.41598 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment