<< Back to Top Threats
K7 Detection Name Affected OS Prevalence AV Definition Version
Riskware ( 005ce2161 ) Windows Low 14.26.58156
MD5

ef7b7f8e7ad7f4cd65662e32c84bbe38

SHA256

31bad07722bf9a756f02cc7bcfcb35d0ca95a2ef5f3295181d29194d33842529

File Size

4,089,688 bytes

Packer Information

N/A

First Seen

31-12-2025

Last Seen

29-04-2026

Aliases

Win64/Tedy.MR!MTB

Behavior Details

Downloads the file:
/filestreamingservice/files/cbb80af8-2d61-4061-ba1b-310744c20bd3?P1=1778860472&P2=404&P3=2&P4=ED1xp%2fWdoIED76JB0%2fIefrv0yAs4KigJ42MxUpqGuig1%2buyJl0CbJWD11NZStp846%2bVyQDmwb6OjswhH%2fKFSAQ%3d%3d&cacheHostOrigin=msedge.b.tlu.dl.delivery.mp.microsoft.com
From the url: http://14.102.231.205/filestreamingservice/files/cbb80af8-2d61-4061-ba1b-310744c20bd3?P1=1778860472&P2=404&P3=2&P4=ED1xp%2fWdoIED76JB0%2fIefrv0yAs4KigJ42MxUpqGuig1%2buyJl0CbJWD11NZStp846%2bVyQDmwb6OjswhH%2fKFSAQ%3d%3d&cacheHostOrigin=msedge.b.tlu.dl.delivery.mp.microsoft.com

Downloads the file:
/filestreamingservice/files/cbb80af8-2d61-4061-ba1b-310744c20bd3/pieceshash?cacheHostOrigin=msedge.f.dl.delivery.mp.microsoft.com
From the url: http://14.102.231.205/filestreamingservice/files/cbb80af8-2d61-4061-ba1b-310744c20bd3/pieceshash?cacheHostOrigin=msedge.f.dl.delivery.mp.microsoft.com

Removal Instructions

1. Update K7 security to the latest version.
2. Restart the machine.