Malware

How to remove “Cerbu.112732”?

Malware Removal

The Cerbu.112732 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Cerbu.112732 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Cerbu.112732?


File Info:

name: FC25405CECE5436C0AF3.mlw
path: /opt/CAPEv2/storage/binaries/829413071999e03454af2705576b1fed642e5e83b1dff735d02ce8a092b14075
crc32: D7B01123
md5: fc25405cece5436c0af3801081c528cf
sha1: 69fb60c6d05cd38a846392caf434325987cdbc99
sha256: 829413071999e03454af2705576b1fed642e5e83b1dff735d02ce8a092b14075
sha512: 53e133f1bbef40bf62a912a6a2640bde80c470e00ea8e1b721caf87f5118ba3297885d1bb87c5b4d5e94f98ff69ecb07cdaf10744a28ae87595d7ebe997380b6
ssdeep: 192:FWy6S2QLpL1I6BLAwPehL5sZ5USwPWct:Uj1QLpL1JLAwPcLCPUSmWc
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A5F1E91697FC4B7ACAB70B325C53A7944F34FB29DD62CA6E6844100AAD127150B72BB2
sha3_384: 1b626e36456c45626745118eebcaee97709fc980473b4d7c7f6d201a140fff007dcbbe1a542a283f67c1405b272387d2
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-08-21 10:52:21

Version Info:

Translation: 0x0000 0x04b0
CompanyName: Microsoft
FileDescription: WindowsFormsApplication10
FileVersion: 1.0.0.0
InternalName: WindowsFormsApplication10.exe
LegalCopyright: Copyright © Microsoft 2021
OriginalFilename: WindowsFormsApplication10.exe
ProductName: WindowsFormsApplication10
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Cerbu.112732 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Cerbu.112732
FireEyeGeneric.mg.fc25405cece5436c
ALYacGen:Variant.Cerbu.112732
K7AntiVirusTrojan-Downloader ( 005811041 )
K7GWTrojan-Downloader ( 005811041 )
BitDefenderThetaGen:NN.ZemsilF.34294.am0@amj36xg
CyrenW32/MSIL_Kryptik.EHH.gen!Eldorado
SymantecMSIL.Downloader!gen7
ESET-NOD32a variant of MSIL/TrojanDownloader.Tiny.BEQ
APEXMalicious
KasperskyHEUR:Backdoor.MSIL.Crysan.gen
BitDefenderGen:Variant.Cerbu.112732
AvastWin32:Trojan-gen
Ad-AwareGen:Variant.Cerbu.112732
EmsisoftGen:Variant.Cerbu.112732 (B)
TrendMicroTROJ_GEN.R014C0WIJ21
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=82)
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Cerbu.112732
MalwarebytesTrojan.Downloader.MSIL.Generic
TrendMicro-HouseCallTROJ_GEN.R014C0WIJ21
IkarusTrojan.MSIL.Krypt
FortinetMSIL/Tiny.BEQ!tr.dldr
AVGWin32:Trojan-gen
CrowdStrikewin/malicious_confidence_80% (W)

How to remove Cerbu.112732?

Cerbu.112732 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment