Malware

What is “Tedy.56952”?

Malware Removal

The Tedy.56952 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Tedy.56952 virus can do?

  • Presents an Authenticode digital signature
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Tedy.56952?


File Info:

name: C052E03F04913920BC27.mlw
path: /opt/CAPEv2/storage/binaries/78b6c008bb05d1ee72ed469602a49ab7b64630c21e79c67c21372aafdbe89473
crc32: 14A781D9
md5: c052e03f04913920bc2784017ea89113
sha1: 450ed45f87252e84601256aec2a7692ff5e63fe6
sha256: 78b6c008bb05d1ee72ed469602a49ab7b64630c21e79c67c21372aafdbe89473
sha512: 953f73b883aabf60240a7cc3fd6776f0c30e37c896fd44bf7f07ed7aa2eed30b0b8b6d138b3634ffa7e0f8802ebaefe349ed1525d2784f9a633fe144a3de6731
ssdeep: 12288:hca9KSBCnzbkP8KmCOrpgvUani8C+lPY:ONvP5rpgManc+lPY
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T159E4C2496EC848B0D45159F442CD864CAA757817EA138E8F3D946EEEFFF36A09E25330
sha3_384: ff4de3eadc5cf51ec42bb67138ec03654b816ffcf6f06ccd1d1ce7ab521f82505303e7b01d6f118d973e737b86fccf95
ep_bytes: 4883ec28e8370300004883c428e92afe
timestamp: 1970-04-14 09:36:10

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Microsoft Security Client Policy Configuration Tool
FileVersion: 4.13.17134.1 (WinBuild.160101.0800)
InternalName: ConfigSecurityPolicy.exe
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: ConfigSecurityPolicy.exe
ProductName: Microsoft® Windows® Operating System
ProductVersion: 4.13.17134.1
Translation: 0x0409 0x04b0

Tedy.56952 also known as:

MicroWorld-eScanGen:Variant.Tedy.56952
FireEyeGen:Variant.Tedy.56952
McAfeeArtemis!C052E03F0491
ClamAVWin.Malware.Ipamor-9884573-0
BitDefenderGen:Variant.Tedy.56952
Ad-AwareGen:Variant.Tedy.56952
McAfee-GW-EditionArtemis
EmsisoftGen:Variant.Tedy.56952 (B)
IkarusTrojan.Autorun
GDataGen:Variant.Tedy.56952
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
ALYacGen:Variant.Tedy.56952
MAXmalware (ai score=88)
APEXMalicious
FortinetPossibleThreat.PALLAS.H

How to remove Tedy.56952?

Tedy.56952 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment