Malware

How to remove “Cerbu.167648”?

Malware Removal

The Cerbu.167648 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Cerbu.167648 virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Cerbu.167648?


File Info:

name: 7DE2B338FD7860E0D165.mlw
path: /opt/CAPEv2/storage/binaries/55da74f65866346eb603aad5c18390482cae4c95262e53fae18efbaa6aa04fd6
crc32: 1E69839B
md5: 7de2b338fd7860e0d165843cfa75fdeb
sha1: 304fb767324f25bb7987729b723d33e82326730b
sha256: 55da74f65866346eb603aad5c18390482cae4c95262e53fae18efbaa6aa04fd6
sha512: ee255bc96d3682f9847046f01158add48ef48bd445c06443323ddf6b3d5858d929d907cfaad59c1c16f65e5336df8b7927053071dedfbe4ee04e062694646071
ssdeep: 768:NqQoj/dSzNVQ1mDNJWbKEdBMQXQ3CnYKe7QIrcwxNAE5JkkR30lcVPoH1Le:MQoj/YNJcYtQItAE5JpF0lcVwH1Le
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T189D35B2327C5863AE510483866093B3DA7CDFEB377147467F760BE6E3932486E9449A3
sha3_384: eba45c478e82fb8a4c6f27c48bff56e8598b8abfaa0f48bfb037b5ce77da4de90ee1a4d6bb96e1fafca8abfa0068951c
ep_bytes: 0200008d8500fcffff506a00ff153470
timestamp: 2005-10-04 04:49:59

Version Info:

0: [No Data]

Cerbu.167648 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Cerbu.167648
ClamAVWin.Dropper.Ramnit-9886751-0
FireEyeGeneric.mg.7de2b338fd7860e0
McAfeeArtemis!7DE2B338FD78
Cylanceunsafe
SangforTrojan.Win32.Save.a
K7AntiVirusRiskware ( 00584baa1 )
K7GWRiskware ( 00584baa1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZexaF.36662.iqZ@aG0EiKe
SymantecW32.Griptolo
APEXMalicious
CynetMalicious (score: 100)
BitDefenderGen:Variant.Cerbu.167648
AvastWin32:Patched-AFR [Trj]
EmsisoftGen:Variant.Cerbu.167648 (B)
F-SecureTrojan.TR/Agent.hfta
VIPREGen:Variant.Cerbu.167648
TrendMicroTROJ_GEN.R03BC0DHV23
McAfee-GW-EditionBehavesLike.Win32.Generic.cz
Trapminesuspicious.low.ml.score
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
GDataWin32.Worm.Ganelp.B
WebrootW32.Vundo.Gen
AviraTR/Agent.hfta
Antiy-AVLTrojan/Win32.SGeneric
ArcabitTrojan.Cerbu.D28EE0
MicrosoftWorm:Win32/Duptwux.A
GoogleDetected
AhnLab-V3Worm/Win.Duptwux.C5223903
ALYacGen:Variant.Cerbu.167648
MAXmalware (ai score=80)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R03BC0DHV23
RisingWorm.Duptwux!8.B81 (TFE:4:EKPDgqaMF5U)
IkarusBackdoor.Win32.LolBot
MaxSecureTrojan.Malware.204912271.susgen
AVGWin32:Patched-AFR [Trj]
DeepInstinctMALICIOUS

How to remove Cerbu.167648?

Cerbu.167648 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment