Malware

Cerbu.157414 (B) (file analysis)

Malware Removal

The Cerbu.157414 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Cerbu.157414 (B) virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Cerbu.157414 (B)?


File Info:

name: AD0402D76BDE397A3282.mlw
path: /opt/CAPEv2/storage/binaries/a8b0b9e6415f555651f34619e7ac030e6cf7292dedd9777dfdfbf7c0726e51f6
crc32: 5A7418A6
md5: ad0402d76bde397a32827f7ddca91b9b
sha1: 2bd7b3688c59cf6ccd88d2474918669646cbce26
sha256: a8b0b9e6415f555651f34619e7ac030e6cf7292dedd9777dfdfbf7c0726e51f6
sha512: 236ce8df0a5188946a7b04167cc8f177d31fa5dccd1b8b553ffa48550ec530436cecc9926795ce11f039e515b16a21146f9cfba7b0f4d583f012c81791805905
ssdeep: 768:nSo4fRnlumpuE7r97LcRRGBViF6YOVyguVE:S1fRlPZ97YRRGzHVygu
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DB24812273F85505F5FB1B306DBA46A28D76BC567A31CD0C5254BA4F2DB2B40D8A4B33
sha3_384: 1a486513c1f4bcaabcd78dc597cd34d0a1c4bf12a979d7ae54ca41e02fd2adc51e171ba48ed13e3dc507a3c0ef3acf73
ep_bytes: 60be003067018dbe00e0d8fe5783cdff
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Cerbu.157414 (B) also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Cerbu.157414
FireEyeGeneric.mg.ad0402d76bde397a
ALYacGen:Variant.Cerbu.157414
CylanceUnsafe
SangforTrojan.Win32.Save.a
BitDefenderGen:Variant.Cerbu.157414
Cybereasonmalicious.88c59c
ArcabitTrojan.Cerbu.D266E6
SymantecML.Attribute.HighConfidence
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Generic-9956637-0
Ad-AwareGen:Variant.Cerbu.157414
SophosML/PE-A
ComodoPacked.Win32.MUPX.Gen@24tbus
VIPREGen:Variant.Cerbu.157414
Trapminesuspicious.low.ml.score
EmsisoftGen:Variant.Cerbu.157414 (B)
IkarusTrojan.Win32.Agent
AviraW32/Poker.A
MAXmalware (ai score=81)
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Cerbu.157414
GoogleDetected
Acronissuspicious
MalwarebytesGeneric.Spyware.Stealer.DDS
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.190074332.susgen
FortinetW32/ULPM.16C0!tr
BitDefenderThetaGen:NN.ZexaF.34796.nmW@a8Ak5zd
AVGWin32:Evo-gen [Trj]
AvastWin32:Evo-gen [Trj]

How to remove Cerbu.157414 (B)?

Cerbu.157414 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment