Malware

Tedy.60890 (file analysis)

Malware Removal

The Tedy.60890 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Tedy.60890 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Tedy.60890?


File Info:

name: 4FE277AC91620085886B.mlw
path: /opt/CAPEv2/storage/binaries/7efa140d5eb5453047b41ab5653a5d39ef4bf8181233c614a184175ad0c39a62
crc32: 46AF0D6B
md5: 4fe277ac91620085886b057872ef4de5
sha1: 240b9e679cff41ff9a308dc2a346126e02eb2ab2
sha256: 7efa140d5eb5453047b41ab5653a5d39ef4bf8181233c614a184175ad0c39a62
sha512: 90e9adc4c95410620cb95b6ceb2893f07a61c8a369fe637345c94933562d90d900f12cebe74f904108e471bb4f344205b712a8c3fb2f76571766c579d4c252b3
ssdeep: 24576:BM8t188s7tUcazumXRLssVf1kHE6Ehg7mM+M6RkMkIM7gE6Eh67W:BTWC9VfWx0g7mM+M6RkMkIM7I067W
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T187756C1FFF809C65C46552304A66A73D9626FC290810461F327CBB1EEE71FB17939A2B
sha3_384: 323575a6079933f9bdabf3046b524facc26fa4b24a51a3e866ec6ddeffa9079da66f47abe2c833cf2a2ade2d79912a11
ep_bytes: 4883ec28488b0565e30100c700000000
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Tedy.60890 also known as:

Elasticmalicious (high confidence)
DrWebWin32.HLLW.Autoruner.547
MicroWorld-eScanGen:Variant.Tedy.60890
FireEyeGen:Variant.Tedy.60890
ALYacTrojan.Agent.FQKM
ZillyaWorm.AutoRun.Win32.177360
SangforTrojan.Win32.Save.a
Cybereasonmalicious.79cff4
CyrenW32/MSIL_Troj.BDC.gen!Eldorado
ClamAVWin.Worm.Vindor-9886047-0
BitDefenderGen:Variant.Tedy.60890
AvastWin32:VB-FBX
Ad-AwareGen:Variant.Tedy.60890
McAfee-GW-EditionBehavesLike.Win64.Generic.th
IkarusVirus.Win32.Fakefire
Antiy-AVLTrojan/Generic.ASMalwS.34AFCE7
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Variant.Tedy.60890
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.Generic.R456361
McAfeeArtemis!4FE277AC9162
MAXmalware (ai score=86)
MalwarebytesMalware.AI.3696146603
APEXMalicious
YandexTrojan.Agent!uC2aA1MV5/A
eGambitUnsafe.AI_Score_99%
FortinetW64/AutoRun.FB6A!tr
AVGWin32:VB-FBX
CrowdStrikewin/malicious_confidence_60% (W)
MaxSecureTrojan.Malware.121218.susgen

How to remove Tedy.60890?

Tedy.60890 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment