Malware

Cerbu.138179 removal tips

Malware Removal

The Cerbu.138179 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Cerbu.138179 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine Cerbu.138179?


File Info:

name: F04D6F51D491443D1B88.mlw
path: /opt/CAPEv2/storage/binaries/27b7d07baa84d0cf871dcadd9bed2095ddc44e66c45e09bda287b6f7936b3550
crc32: 83E5AFC8
md5: f04d6f51d491443d1b885941c9742bde
sha1: beb4f36b624e675339bd8488602105203b873a0b
sha256: 27b7d07baa84d0cf871dcadd9bed2095ddc44e66c45e09bda287b6f7936b3550
sha512: 094f525ed4b8f23619ab65767d18bc67a87d877877ee775dde0060d8b97f69bc8dd31264a748a51e2e46d3870b104be2afbe85c21b61962e6d7319b5dbddcd0e
ssdeep: 12288:9kfcwa603Nsny+nDTCvNfnNovGQacfWdF+3J6SYN6Mu4fkpa:4s3P+nDTCvdbcfW3uJ63NK4fkpa
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T108F4062F3B467AB2ED1DD1308D414A08BB6F0B333281B9A257DF95CA875F46A6D45CC8
sha3_384: eccc46fad15c1df78ba989d0a19a2d9c82b45ab6ad41e53320143d28a0aef3cce397902e5677878b96bb68db71aa25e7
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-08-03 01:56:06

Version Info:

Comments:
CompanyName:
FileVersion: , , ,
FileDescription:
LegalCopyright:
ProductName:
ProductVersion: , , ,
Translation: 0x0409 0x04b0

Cerbu.138179 also known as:

BkavW32.AIDetectNet.01
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Cerbu.138179
FireEyeGeneric.mg.f04d6f51d491443d
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
BitDefenderThetaGen:NN.ZemsilF.34582.Sm0@a4HgMsni
SymantecScr.Malcode!gdn33
tehtrisGeneric.Malware
ESET-NOD32a variant of MSIL/Injector.VRI
APEXMalicious
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Cerbu.138179
AvastWin32:InjectorX-gen [Trj]
Ad-AwareGen:Variant.Cerbu.138179
SophosGeneric ML PUA (PUA)
VIPREGen:Variant.Cerbu.138179
SentinelOneStatic AI – Malicious PE
GDataMSIL.Trojan-Dropper.Agent.BIX
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.WN.C5196086
Acronissuspicious
ALYacGen:Variant.Cerbu.138179
MAXmalware (ai score=81)
MalwarebytesTrojan.Crypt.MSIL
RisingMalware.Obfus/MSIL@AI.93 (RDM.MSIL:e3sS+XD6rTxRMNGfkMI1oA)
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Injector.VRN!tr
AVGWin32:InjectorX-gen [Trj]
Cybereasonmalicious.b624e6

How to remove Cerbu.138179?

Cerbu.138179 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment