Malware

What is “Cerbu.125245 (B)”?

Malware Removal

The Cerbu.125245 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Cerbu.125245 (B) virus can do?

  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Anomalous .NET characteristics
  • Anomalous binary characteristics

How to determine Cerbu.125245 (B)?


File Info:

name: 61F6DF8A2151E3488F53.mlw
path: /opt/CAPEv2/storage/binaries/3198e860457e75df0163ebd39d6f08efb03fc83c877c6b154559a37a8639f6e9
crc32: FA1CD20A
md5: 61f6df8a2151e3488f5397e549be2a3f
sha1: 1404e3055b92e95b87acde2ca2e6a1f0a4a40dd2
sha256: 3198e860457e75df0163ebd39d6f08efb03fc83c877c6b154559a37a8639f6e9
sha512: 4f9c31eb19dbec67719e5bdca7bc2c279983a85f5ae7176dcdc6e60778c2b5d1a0d9023295e82da293beff4a6cb6928451b026c3c5e656a8340881cafc655be7
ssdeep: 6144:gQgouJ/GZ4zg5fLdZdJElM/JDzvmlUv7jTJMeQC9uXE2AIWmXS:fgouJ/GYiLdZdgMp/vDJLQ9AlmX
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T1F64412267B08D831EBD84B7885F38F0D57B152560622EE5E394879C29FA30858F5BF53
sha3_384: 45b4580ff6deb8dc1c70065654ea5fe7ca5d32dcbdd1e9280f00b3f3dbe6f717be4b9653b9ea38b6c089298df125e8cf
ep_bytes: 4d5a90000300000004000000ffff0000
timestamp: 2021-12-06 16:21:50

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: test5.exe
LegalCopyright:
OriginalFilename: test5.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

Cerbu.125245 (B) also known as:

LionicTrojan.Win32.Cerbu.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Cerbu.125245
FireEyeGeneric.mg.61f6df8a2151e348
ALYacGen:Variant.Cerbu.125245
CylanceUnsafe
Cybereasonmalicious.55b92e
ArcabitTrojan.Cerbu.D1E93D
SymantecTrojan.Gen.2
APEXMalicious
Paloaltogeneric.ml
BitDefenderGen:Variant.Cerbu.125245
Ad-AwareGen:Variant.Cerbu.125245
EmsisoftGen:Variant.Cerbu.125245 (B)
McAfee-GW-EditionBehavesLike.Win64.VirRansom.dh
SophosML/PE-A
IkarusTrojan.Win32.Krypt
GridinsoftRansom.Win64.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Variant.Cerbu.125245
AhnLab-V3Trojan/Win.Generic.C4821829
McAfeeArtemis!61F6DF8A2151
MAXmalware (ai score=81)
MalwarebytesMalware.AI.2508421863
TrendMicro-HouseCallTROJ_GEN.R002H09L921
SentinelOneStatic AI – Malicious PE
CrowdStrikewin/malicious_confidence_80% (W)

How to remove Cerbu.125245 (B)?

Cerbu.125245 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment