Malware

Tedy.54100 information

Malware Removal

The Tedy.54100 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Tedy.54100 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Anomalous file deletion behavior detected (10+)
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Created a process from a suspicious location
  • CAPE detected the PyInstaller malware family

How to determine Tedy.54100?


File Info:

name: 65ED2CFA6374084C4D58.mlw
path: /opt/CAPEv2/storage/binaries/f9981ca453f53239e15901f983b85461a0b34e27aa6e26813076b907919c7405
crc32: 0FE2C892
md5: 65ed2cfa6374084c4d58e1f86b8d1d5e
sha1: e5bb00d6271ef10affd9d5119f9d8efa0a19da97
sha256: f9981ca453f53239e15901f983b85461a0b34e27aa6e26813076b907919c7405
sha512: 99f8a14d52f991d352d80afafa2bf55979c6195e2d9bbda77d7738c5e72a03f0b4406d77216bae6b7096592f636e58ecefee698d24d2c2011867e8fe950ef118
ssdeep: 98304:a18rZoEgGh5vBHAq+xapjlZVDYucrK7W/Qeqn3nhkODPwjdWdqGPx+zGVF4D29:a1iZJlh5vBH+apjlIBd/Hq3uOsMdqmxf
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T17736334472A518FDF96B8236C481D53ED672B8015398CA9F0BE8DA279F237807D3E761
sha3_384: baf6ae1d6e88effb33dc93a408cb8a329c146a57866bfcf9b528154f2ce637caafa88361ace5c7863628514e70c62a23
ep_bytes: 4883ec28e8f70400004883c428e972fe
timestamp: 2021-11-09 18:03:59

Version Info:

0: [No Data]

Tedy.54100 also known as:

LionicTrojan.Win32.Tedy.4!c
MicroWorld-eScanGen:Variant.Tedy.54100
McAfeeArtemis!65ED2CFA6374
ZillyaTrojan.Agent.Script.1642598
TrendMicro-HouseCallTROJ_GEN.R002H09L421
Paloaltogeneric.ml
BitDefenderGen:Variant.Tedy.54100
AvastWin64:Trojan-gen
Ad-AwareGen:Variant.Tedy.54100
McAfee-GW-EditionBehavesLike.Win64.Ransom.tc
FireEyeGen:Variant.Tedy.54100
EmsisoftGen:Variant.Tedy.54100 (B)
GDataGen:Variant.Tedy.54100
JiangminTrojan.Agentb.kqi
Antiy-AVLTrojan[PSW]/Python.Agent
ArcabitTrojan.Tedy.DD354
MicrosoftProgram:Win32/Uwamson.A!ml
CynetMalicious (score: 100)
ALYacGen:Variant.Tedy.54100
MAXmalware (ai score=84)
FortinetW32/PossibleThreat
AVGWin64:Trojan-gen

How to remove Tedy.54100?

Tedy.54100 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment