Malware

Cerbu.152186 (file analysis)

Malware Removal

The Cerbu.152186 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Cerbu.152186 virus can do?

  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine Cerbu.152186?


File Info:

name: 0EA6B348576319B03844.mlw
path: /opt/CAPEv2/storage/binaries/49ee9f859a1d4a766ce4905f747034c3e9aebdbd67d3f1f7d887193e912b71ba
crc32: 48D4BDE0
md5: 0ea6b348576319b038446272ef277d4c
sha1: 40c838f18b18f11a03950ab43403913d115f735a
sha256: 49ee9f859a1d4a766ce4905f747034c3e9aebdbd67d3f1f7d887193e912b71ba
sha512: f5e8f5d2693f092e29029618fd9d61093bbe6d2e7391e6cf17f825d82494c0103fa83bb4b7e46f0b068b69d5b189fc704aa453121740639d6de32b887992f1fa
ssdeep: 768:yEH7Bn3H2QiA/M41v1nbpCp+QAOhGDzeENgm3HtA:yEH7QJ+LMp+u+X3C
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1B1F2E6297CDD802EF27F8FF83EE418D69A75F3762619EA061888475B4A43740CD1237A
sha3_384: bba895456a7a0b036a0bd22f1c78e053757651d580122cbe61c59fdfa99463b0707e468e166aac895effa56edd045a17
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-08-29 22:00:04

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: hass.exe
LegalCopyright:
OriginalFilename: hass.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

Cerbu.152186 also known as:

BkavW32.AIDetectNet.01
MicroWorld-eScanGen:Variant.Cerbu.152186
ALYacGen:Variant.Cerbu.152186
CylanceUnsafe
VIPREGen:Variant.Cerbu.152186
CyrenW32/Trojan.GPA.gen!Eldorado
Elasticmalicious (high confidence)
APEXMalicious
BitDefenderGen:Variant.Cerbu.152186
AvastFileRepMalware [Misc]
Ad-AwareGen:Variant.Cerbu.152186
EmsisoftGen:Variant.Cerbu.152186 (B)
McAfee-GW-EditionRDN/Generic.hbg
Trapminemalicious.moderate.ml.score
FireEyeGen:Variant.Cerbu.152186
GDataMSIL.Trojan.PSE.1ETS82X
GoogleDetected
AviraHEUR/AGEN.1235003
MAXmalware (ai score=85)
Antiy-AVLTrojan/Generic.ASMalwS.720E
ArcabitTrojan.Cerbu.D2527A
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.C3501593
Acronissuspicious
McAfeeRDN/Generic.hbg
MalwarebytesMalware.AI.1850469402
RisingTrojan.Generic/MSIL@AI.96 (RDM.MSIL:SsufSToRi3IywAJrDd0lSQ)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
AVGFileRepMalware [Misc]
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Cerbu.152186?

Cerbu.152186 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment