Malware

Should I remove “Cerbu.19325”?

Malware Removal

The Cerbu.19325 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Cerbu.19325 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.

How to determine Cerbu.19325?


File Info:

crc32: 8237B178
md5: 3f8ab109173331a8cabefa36aa741e21
name: 3F8AB109173331A8CABEFA36AA741E21.mlw
sha1: db9d8f0d4cdd46877acff20f4bde414b675c90af
sha256: 21697f9553b57892cd5708768dc34f7c929cb55fd8c23d584cc654a3c886e09a
sha512: c390f9a4a872a1c3d5279f76e61ca8c660d0ef527c04e6229c5cf164c8c0be66f8e8eb22e4bfa0935d66c2e8079d0f18ca50c200810484b5df9ca17f35235835
ssdeep: 24576:7I/W0lOlC7Mhfjel2dkY8AvrbWvcO4zsAvI:7I/BQCejwAT6vcO4zsAQ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Cerbu.19325 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0053b5071 )
LionicTrojan.Win32.Ekstak.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Cerbu.19325
CylanceUnsafe
CrowdStrikewin/malicious_confidence_70% (D)
AlibabaTrojan:Win32/Ekstak.349e3abb
K7GWTrojan ( 0053b5071 )
Cybereasonmalicious.917333
CyrenW32/FraudLoad.F12_DET!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GLRA
APEXMalicious
AvastWin32:ICLoader-X [Adw]
KasperskyTrojan.Win32.Ekstak.jolh
BitDefenderGen:Variant.Cerbu.19325
NANO-AntivirusTrojan.Win32.Ekstak.fjdyad
MicroWorld-eScanGen:Variant.Cerbu.19325
TencentMalware.Win32.Gencirc.10b4959e
Ad-AwareGen:Variant.Cerbu.19325
SophosMal/Generic-S
ComodoApplication.Win32.ICLoader.GS@84429a
BitDefenderThetaGen:NN.ZexaF.34294.NvW@a8!Mukhk
McAfee-GW-EditionBehavesLike.Win32.Worm.tc
FireEyeGeneric.mg.3f8ab109173331a8
EmsisoftGen:Variant.Cerbu.19325 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Ekstak.tqk
AviraTR/ICLoader.Gen8
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.2886A1A
MicrosoftTrojan:Win32/Ekstak.CC!MTB
GDataGen:Variant.Cerbu.19325
AhnLab-V3PUP/Win32.BrowseFox.R238559
Acronissuspicious
McAfeePacked-FHK!3F8AB1091733
VBA32BScope.Trojan.Ekstak
MalwarebytesMalware.AI.916498646
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.AA23 (CLASSIC)
IkarusAdWare.ICLoader
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CoinMiner.GYQC!tr
AVGWin32:ICLoader-X [Adw]
Paloaltogeneric.ml

How to remove Cerbu.19325?

Cerbu.19325 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment