Malware

Tedy.68969 removal tips

Malware Removal

The Tedy.68969 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Tedy.68969 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Anomalous file deletion behavior detected (10+)
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • CAPE detected the PyInstaller malware family

How to determine Tedy.68969?


File Info:

name: 4803A3A99D230608463E.mlw
path: /opt/CAPEv2/storage/binaries/bf38a1d7480b441ce83b59b0fe1ca8a01de68a95b7e672f02ad0aa50a180e3f2
crc32: B037905A
md5: 4803a3a99d230608463e3280c64c7736
sha1: 15a51b7e657d0c7c03af19014fe6b502cd51ee68
sha256: bf38a1d7480b441ce83b59b0fe1ca8a01de68a95b7e672f02ad0aa50a180e3f2
sha512: 0f56c8dd9e9280579e826d32a99395c731bd594f2d5283656485888df3fdabe3acae40b3a7f12f0a7a5347539b839b46c5970d0f5d02f5ea2bd6ce3a709aad0f
ssdeep: 196608:Xw9mCxyk293rJvWa5kpm3jhZLsHJzXowJeJGhhBrGVG93pfhBQtU2drLCb:GUk2fl5k2ZLspzYwQJG5rGVGbJStU6Lc
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T194A633407FE901B3DAA20632761AD3728E3D3D212750AAF7E784FB252B638C1D535B56
sha3_384: e4e3e09af4889dc8752fcd1164d2d26f08e7e5a2576da29b262c2e31d4b41e129f5f04a85c03ccf824030545f95cc79b
ep_bytes: e866050000e978feffffcccccccccccc
timestamp: 2022-01-24 07:31:18

Version Info:

0: [No Data]

Tedy.68969 also known as:

BkavW32.AIDetect.malware2
MicroWorld-eScanGen:Variant.Tedy.68969
BitDefenderGen:Variant.Tedy.68969
CyrenW64/Tedy.B.gen!Eldorado
ESET-NOD32multiple detections
APEXMalicious
KasperskyUDS:Trojan-Spy.MSIL.Stealer.gen
SophosGeneric ML PUA (PUA)
ZillyaTrojan.Bingoml.Win32.8340
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeGeneric.mg.4803a3a99d230608
EmsisoftGen:Variant.Tedy.68969 (B)
SentinelOneStatic AI – Malicious SFX
AviraHEUR/AGEN.1133172
MAXmalware (ai score=89)
Antiy-AVLTrojan/Generic.ASMalwS.3507346
ZoneAlarmHEUR:Trojan-Spy.MSIL.Stealer.gen
GDataWin32.Trojan.BSE.EKK90M
CynetMalicious (score: 100)
BitDefenderThetaGen:NN.ZemsilF.34182.vs0@aOLNETai
ALYacIL:Trojan.MSILZilla.9872
VBA32BScope.Trojan.Meterpreter
MalwarebytesSpyware.PasswordStealer
TrendMicro-HouseCallTROJ_GEN.R002H09AQ22
RisingTrojan.Generic/MSIL@AI.100 (RDM.MSIL:WN55pJYxkF7YqYEt7bs+qQ)
YandexRiskware.Themida!1BfR0pvsJX4
FortinetW32/PossibleThreat
AVGWin32:RATX-gen [Trj]
Cybereasonmalicious.99d230
AvastWin32:RATX-gen [Trj]

How to remove Tedy.68969?

Tedy.68969 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment