Malware

Win32/Teta.B removal

Malware Removal

The Win32/Teta.B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Teta.B virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Likely virus infection of existing system binary
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz

How to determine Win32/Teta.B?


File Info:

crc32: E924C17E
md5: 252dd2ea8fa7549f798ef0c470b17dc0
name: 252DD2EA8FA7549F798EF0C470B17DC0.mlw
sha1: 6d3792461a02f4a6d1ab448e620fc0c58a626a1e
sha256: 57c9661702faf583080fef085cf652c85d1912471b546822fffe944ea2ced1ad
sha512: ab981671c00f15c5abafe08ea9b0c68ff1ca1e2ac3f7290536787aa55c62d80f0c6cd21b449ba5120c43c2c5bcc5643069023d816ffcb6e6669dd30b09b706a5
ssdeep: 48:OEPkoq+EZBWnuVDsTD4l+OKAHB6ZqWjd0PPBvOTEBDTTjIF1qSeJY8JTaJpaYno:nPkGEOygEHKKB6ZuOE9kF/QYo
type: PE32 executable (console) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Win32/Teta.B also known as:

BkavW32.AIDetect.malware1
K7AntiVirusVirus ( 00119e9b1 )
Elasticmalicious (high confidence)
DrWebWin32.Teta.5632
CynetMalicious (score: 100)
CAT-QuickHealW32.Teta.A4
ALYacGen:Trojan.FileInfector.aqX@aGdf5gi
CylanceUnsafe
ZillyaVirus.Teta.Win32.2
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (D)
K7GWVirus ( 00119e9b1 )
Cybereasonmalicious.a8fa75
CyrenW32/Teta.VJDO-6054
SymantecW32.Teta
ESET-NOD32Win32/Teta.B
APEXMalicious
AvastWin32:Adware-gen [Adw]
KasperskyVirus.Win32.Teta.a
BitDefenderGen:Trojan.FileInfector.aqX@aGdf5gi
NANO-AntivirusVirus.Win32.Teta.fswk
MicroWorld-eScanGen:Trojan.FileInfector.aqX@aGdf5gi
TencentWin32.Virus.Teta.Hoor
Ad-AwareGen:Trojan.FileInfector.aqX@aGdf5gi
SophosML/PE-A
VIPREBehavesLike.Win32.Malware.tsc (mx-v)
McAfee-GW-EditionBehavesLike.Win32.Generic.xz
FireEyeGen:Trojan.FileInfector.aqX@aGdf5gi
EmsisoftGen:Trojan.FileInfector.aqX@aGdf5gi (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Teta.a
eGambitUnsafe.AI_Score_100%
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Trojan.FileInfector.aqX@aGdf5gi
McAfeeArtemis!252DD2EA8FA7
MAXmalware (ai score=87)
VBA32Win32.Virus.Unknown.Heur
PandaTrj/Genetic.gen
MaxSecureVirus.Teta.a
FortinetW32/Teta.A
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Win32/Teta.B?

Win32/Teta.B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment