Malware

What is “Tedy.431374”?

Malware Removal

The Tedy.431374 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Tedy.431374 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Tedy.431374?


File Info:

name: A1285CAC506DCB8A6105.mlw
path: /opt/CAPEv2/storage/binaries/3247b3593fb279bf8fa066f4a3ec095f590971fbcaa3247ac503cf3773fbcb6e
crc32: DA55DA6C
md5: a1285cac506dcb8a6105b00f52299d84
sha1: a854edafbba296588b907d07b44c85676fc1e4b9
sha256: 3247b3593fb279bf8fa066f4a3ec095f590971fbcaa3247ac503cf3773fbcb6e
sha512: e8f6ad03e1a94c8661f7e795ac71f125183e0aa5648bb4423d1bb820a30753891df2208bf3e076f11c93942711a02f679f3b8102c3846116c539399957e26b89
ssdeep: 24576:YFIj99TULMSsCNGXgELDTq7tBpfFz2fAV1fOZmpSAvaYoc3uibyewa:aU99FSM7fcjpfFVVkmoxYxopa
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14745331FCA774E0AF6B78437EBC7AE0C4240FA497E2E026F488567C5213D3E95582667
sha3_384: c6d5b41a970357609f5a4a2c1a07a1f1797ff4791b7ab871030aceaca206a15df7fa0724a1186d6a6ba77f49e003ffa1
ep_bytes: 60be00c06c008dbe0050d3ff5783cdff
timestamp: 2023-06-30 14:30:09

Version Info:

FileVersion: 1.2.1.0
FileDescription: FxGrouNum
ProductName: FxGrouNum
ProductVersion: 1.2.1.0
CompanyName: FxGrouNum
LegalCopyright: FxGrouNum
Comments: FxGrouNum
Translation: 0x0804 0x04b0

Tedy.431374 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Fragtor.4!c
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Tedy.431374
McAfeeArtemis!A1285CAC506D
MalwarebytesMalware.AI.2285458781
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005246d51 )
K7GWTrojan ( 005246d51 )
Cybereasonmalicious.fbba29
BitDefenderThetaGen:NN.ZexaF.36738.lnKfa8bpCxmj
CyrenW32/S-776111c5!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
BitDefenderGen:Variant.Tedy.431374
AvastWin32:TrojanX-gen [Trj]
EmsisoftGen:Variant.Tedy.431374 (B)
VIPREGen:Variant.Tedy.431374
McAfee-GW-EditionBehavesLike.Win32.Backdoor.tc
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.a1285cac506dcb8a
SophosGeneric Reputation PUA (PUA)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.1KQMTX4
GoogleDetected
MAXmalware (ai score=89)
Antiy-AVLTrojan/Win32.FlyStudio.a
XcitiumTrojWare.Win32.Agent.OSCF@5rs7jr
ArcabitTrojan.Tedy.D6950E
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.C5448287
VBA32BScope.Trojan.Download
ALYacGen:Variant.Tedy.431374
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002H09G123
RisingTrojan.Generic@AI.100 (RDML:Gi03QODxzhpj32xc02nyrw)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CoinMiner.PHP!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/grayware_confidence_60% (D)

How to remove Tedy.431374?

Tedy.431374 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment