Malware

Cerbu.137093 (file analysis)

Malware Removal

The Cerbu.137093 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Cerbu.137093 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Cerbu.137093?


File Info:

name: 9BDE5BCBBD02181FF4B7.mlw
path: /opt/CAPEv2/storage/binaries/65f8d8343d4c248ef01d7a8e8b1f4177aef93b055f9484ebd13ae4104e934b93
crc32: F96994C2
md5: 9bde5bcbbd02181ff4b75923d75517b3
sha1: 55a5877738a0a3d74b431da54fddb0f7dd24d36e
sha256: 65f8d8343d4c248ef01d7a8e8b1f4177aef93b055f9484ebd13ae4104e934b93
sha512: c79c6ca98cb5c8351008919f920dcedf3a0c55dfe8ab38aca73f7f0c98d130b8a1946801b6839d4dd46af7b67489270e6791674a916a7ecf14819bf81be18b18
ssdeep: 24576:P2BdruLIO36Vp+RV/33irNXBi/2QoGQC19FhVVKYegtDXf3Wbm:+Bu1d3h3o5I/egB3Wbm
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T15465BE41F59340F1D5893274702E7B2F8A3D56044B2449E7A3D42EA5AFB07E32AFB792
sha3_384: 831a1840daf9f002d89b219d4ca2706753744f9f41d8b48968d2bd263c25318e5adc09698fd557a5beb6d3ac7a0ced20
ep_bytes: ff74240cff74240cff74240ce86c1701
timestamp: 2022-10-26 20:29:26

Version Info:

0: [No Data]

Cerbu.137093 also known as:

BkavW32.AIDetectMalware
LionicRiskware.Win32.Cerbu.1!c
MicroWorld-eScanGen:Variant.Cerbu.137093
SkyhighBehavesLike.Win32.Generic.th
McAfeeGenericRXMR-MX!9BDE5BCBBD02
MalwarebytesGameHack.HackTool.RiskWare.DDS
SangforTrojan.Win32.Save.a
K7AntiVirusUnwanted-Program ( 0057fb771 )
K7GWUnwanted-Program ( 0057fb771 )
CrowdStrikewin/grayware_confidence_100% (W)
ArcabitTrojan.Cerbu.D21785
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/GameHack.FGP potentially unsafe
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Midie-9919869-0
BitDefenderGen:Variant.Cerbu.137093
AvastWin32:Malware-gen
EmsisoftGen:Variant.Cerbu.137093 (B)
VIPREGen:Variant.Cerbu.137093
SophosMal/Generic-S (PUA)
VaristW32/GameHack.AL.gen!Eldorado
Antiy-AVLRiskWare/Win32.Gamehack
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataGen:Variant.Cerbu.137093
GoogleDetected
AhnLab-V3Trojan/Win.Generic.R462567
BitDefenderThetaGen:NN.ZedlaF.36680.wv4@aibD7Ub
ALYacGen:Variant.Cerbu.137093
Cylanceunsafe
PandaTrj/Chgt.AD
RisingTrojan.Generic@AI.100 (RDML:kvFgee4gBg0rQKLTSXkT6w)
YandexRiskware.Agent!gPW2dX1HNPA
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.184689675.susgen
FortinetRiskware/GameHack
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Cerbu.137093?

Cerbu.137093 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment