Malware

About “Cerbu.143026” infection

Malware Removal

The Cerbu.143026 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Cerbu.143026 virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Cerbu.143026?


File Info:

name: 1EFE3AA0573FE0E18A40.mlw
path: /opt/CAPEv2/storage/binaries/20dd36efa5c530de2f1d6dd506a4864f56fb708c526821937c21d5cf34a31375
crc32: 370C9018
md5: 1efe3aa0573fe0e18a40e2cc113448e6
sha1: 51aea3843c04d5728a43111df8efcd6834c64edf
sha256: 20dd36efa5c530de2f1d6dd506a4864f56fb708c526821937c21d5cf34a31375
sha512: df3b7e74f91ab898a0c21a11e452a2ec95b3f4787064aff48ac09818d7524ff41f3ae3a809e0a57723a2e93796d2f26913cde2456119cbeff5c8b78fdbdcb2c4
ssdeep: 6144:2orW0O5EErPWm8ZAMe6poNgi3caOHO5Njo:2AIEErum8ZAMeJ3hOHOH
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T152A4AD2076408036F7B60B3059A5D6B948787C3527A9958FF3687E3A2E702C39B7735E
sha3_384: 094ccd4375bcab38ed9c552e69b9f7823df63412d1a5b33d9ec62c7f23e3696d1c2dffa7e27571f84b7346df8f71c492
ep_bytes: 0980380a7503ff4508403bc172f3f747
timestamp: 2013-08-27 01:52:22

Version Info:

0: [No Data]

Cerbu.143026 also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanGen:Variant.Cerbu.143026
ClamAVWin.Malware.Urelas-9655843-0
McAfeeGenericRXAA-AA!1EFE3AA0573F
Cylanceunsafe
SangforVirus.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
BaiduWin32.Trojan.Urelas.a
CyrenW32/Urelas.DD.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
APEXMalicious
CynetMalicious (score: 100)
BitDefenderGen:Variant.Cerbu.143026
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.Urelas.16000132
Ad-AwareGen:Variant.Mikey.88496
TACHYONTrojan/W32.Agent.450560.VT
EmsisoftGen:Variant.Cerbu.143026 (B)
VIPREGen:Variant.Cerbu.143026
McAfee-GW-EditionBehavesLike.Win32.Generic.gm
FireEyeGeneric.mg.1efe3aa0573fe0e1
SophosML/PE-A
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.1CYCYN2
Antiy-AVLTrojan[Downloader]/Win32.Urelas.ab
XcitiumTrojWare.Win32.Urelas.GF@5tev77
ArcabitTrojan.Cerbu.D22EB2
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3Trojan/Win32.Urelas.R80897
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.36196.BmY@a4c3Knd
ALYacGen:Variant.Cerbu.143026
MAXmalware (ai score=87)
MalwarebytesUrelas.Trojan.Downloader.DDS
TrendMicro-HouseCallTROJ_GEN.R03BH0CEI23
RisingTrojan.Gupboot!1.9CEA (CLASSIC)
IkarusTrojan.Win32.Urelas
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Urelas.AP!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.0573fe
DeepInstinctMALICIOUS

How to remove Cerbu.143026?

Cerbu.143026 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment