Malware

Tedy.47417 removal tips

Malware Removal

The Tedy.47417 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Tedy.47417 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Presents an Authenticode digital signature
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

wpad.local-net

How to determine Tedy.47417?


File Info:

name: 5676746E33E06A27007E.mlw
path: /opt/CAPEv2/storage/binaries/d6cf8ba121a8ffa7a48e07658a8f9c8f64463a845522b5477ff079571e30cd21
crc32: 7657ECFA
md5: 5676746e33e06a27007e2c75a182ea57
sha1: eb26bdbe29ca56803aa800c84768189b99f96c33
sha256: d6cf8ba121a8ffa7a48e07658a8f9c8f64463a845522b5477ff079571e30cd21
sha512: 5f5a5e1daf484ca456bce47385aa852c430a88279b86531c7ae92dbcdf7664f4c76e2fb0703a40f691e747d37b59c2bf02d539b906d587c1aeba6c6f63a2af70
ssdeep: 24576:M0drhXfzL5436qtypB1dbRsqBgOroB+o5H3MiPpzV0gaRT/q3cEYRul:M0ZNzLd/fbRhTr/o5c4pzV8TWcK
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T133557D07F2A510ECD0AEC278C7169536EA71B8550B31B9EF039896652E73BE06F3DB11
sha3_384: 2383612818fb3ec4a8525081507045c7a0d25e6740375c9963305cb7fcb568d17cfcb1c9ba681489ce4e3361cdbe6106
ep_bytes: 4883ec28e80b0000004883c428e97afe
timestamp: 2020-06-02 00:06:37

Version Info:

CompanyName: Google LLC
FileDescription: Google Chrome
FileVersion: 83.0.4103.97
InternalName: elevation_service_exe
LegalCopyright: Copyright 2019 Google LLC. All rights reserved.
OriginalFilename: elevation_service.exe
ProductName: Google Chrome
ProductVersion: 83.0.4103.97
CompanyShortName: Google
ProductShortName: Chrome
LastChange: 326d148b9655369b86498d9ecca39f63dd2bdd2d-refs/branch-heads/4103@#657
Official Build: 1
Translation: 0x0409 0x04b0

Tedy.47417 also known as:

LionicTrojan.Win32.Tedy.4!c
MicroWorld-eScanGen:Variant.Tedy.47417
FireEyeGen:Variant.Tedy.47417
McAfeeArtemis!5676746E33E0
BaiduWin32.Worm.Agent.u
CyrenW64/Emotet.BCL.gen!Eldorado
Paloaltogeneric.ml
BitDefenderGen:Variant.Tedy.47417
AvastWin32:Patched-AUS [Trj]
Ad-AwareGen:Variant.Tedy.47417
EmsisoftGen:Variant.Tedy.47417 (B)
McAfee-GW-EditionBehavesLike.Win64.Dropper.th
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Variant.Tedy.47417
ALYacGen:Variant.Tedy.47417
MAXmalware (ai score=82)
TrendMicro-HouseCallTROJ_GEN.R002H09KO21
IkarusTrojan.Autorun
FortinetW64/Autorun.EV!tr
AVGWin32:Patched-AUS [Trj]

How to remove Tedy.47417?

Tedy.47417 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment