Categories: Malware

Cerbu.20069 malicious file

The Cerbu.20069 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Cerbu.20069 virus can do?

  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Cerbu.20069?


File Info:

crc32: 4E563E5Amd5: 0a8b9c014a789385f67757419e3b87bcname: 0A8B9C014A789385F67757419E3B87BC.mlwsha1: 463cad6e1322912e61457c134c6559b51723e6dcsha256: 1dcbff2520cf6aca6637a9f67a8f7c0f4121912516a846fc9d6019d28a26c72bsha512: 20cfd458c05767d019d8a0d46126e38e30629298fc5f60ed068430ce4636b1f0012288c463a6085d8f0061cd9a66621e966ff7bd82435c7a2be8c6c941295708ssdeep: 3072:vfb2T1SOT3pi5kiXa6p8Z/o1VyVad4wVhJxELbhqWaNdzmBoPDfaZMorh0TJcAs:HXk6N2o1FvV6LwWaOWCidFKAtype: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0LegalCopyright: Copyright xa9 2018Assembly Version: 1.0.0.0InternalName: WindowsApplication1.exeFileVersion: 1.0.0.0ProductName: WindowsApplication1ProductVersion: 1.0.0.0FileDescription: WindowsApplication1OriginalFilename: WindowsApplication1.exe

Cerbu.20069 also known as:

K7AntiVirus Trojan ( 004f37981 )
Lionic Trojan.Win32.Generic.m2cu
Elastic malicious (high confidence)
Cynet Malicious (score: 100)
ALYac Gen:Variant.Cerbu.20069
Cylance Unsafe
Zillya Trojan.Generic.Win32.225473
Sangfor Trojan.Win32.Generic.ky
CrowdStrike win/malicious_confidence_90% (W)
Alibaba Trojan:MSIL/Kryptik.497051f8
K7GW Trojan ( 004f37981 )
Cybereason malicious.14a789
Cyren W32/S-8931d031!Eldorado
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of MSIL/Kryptik.GPA
APEX Malicious
Avast Win32:Malware-gen
Kaspersky HEUR:Trojan.Win32.Generic
BitDefender Gen:Variant.Cerbu.20069
NANO-Antivirus Trojan.Win32.Kryptik.fnqzor
MicroWorld-eScan Gen:Variant.Cerbu.20069
Tencent Win32.Trojan.Generic.Gvr
Ad-Aware Gen:Variant.Cerbu.20069
Sophos Mal/Generic-R + Troj/MSIL-HPV
Comodo Malware@#3t77n6okkl7tu
BitDefenderTheta Gen:NN.ZemsilF.34266.rm0@amWctim
TrendMicro TROJ_GEN.R007C0PIJ21
McAfee-GW-Edition BehavesLike.Win32.Generic.dh
FireEye Generic.mg.0a8b9c014a789385
Emsisoft Gen:Variant.Cerbu.20069 (B)
SentinelOne Static AI – Malicious PE
Avira HEUR/AGEN.1120314
eGambit Unsafe.AI_Score_100%
Antiy-AVL Trojan/Generic.ASMalwS.2887091
Microsoft Backdoor:MSIL/Bladabindi!rfn
Arcabit Trojan.Cerbu.D4E65
GData Gen:Variant.Cerbu.20069
AhnLab-V3 Trojan/Win32.Bladabindi.C2630499
McAfee RDN/Generic.hbg
MAX malware (ai score=82)
VBA32 TScope.Trojan.MSIL
Malwarebytes Generic.Malware/Suspicious
Panda Trj/GdSda.A
TrendMicro-HouseCall TROJ_GEN.R007C0PIJ21
Yandex Trojan.Agent!+9F/tzjz7T8
Ikarus Trojan.MSIL.Crypt
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/Generic.GPA!tr
AVG Win32:Malware-gen
Paloalto generic.ml

How to remove Cerbu.20069?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

MSIL/GenKryptik.GXIZ information

The MSIL/GenKryptik.GXIZ is considered dangerous by lots of security experts. When this infection is active,…

2 months ago

Malware.AI.2789448175 (file analysis)

The Malware.AI.2789448175 is considered dangerous by lots of security experts. When this infection is active,…

2 months ago

Jalapeno.1878 removal instruction

The Jalapeno.1878 is considered dangerous by lots of security experts. When this infection is active,…

2 months ago

What is “Trojan.Heur3.LPT.YmKfaKBcBekib”?

The Trojan.Heur3.LPT.YmKfaKBcBekib is considered dangerous by lots of security experts. When this infection is active,…

2 months ago

How to remove “Worm.Win32.Vobfus.exmt”?

The Worm.Win32.Vobfus.exmt is considered dangerous by lots of security experts. When this infection is active,…

2 months ago

About “TrojanDownloader:Win32/Beebone.JO” infection

The TrojanDownloader:Win32/Beebone.JO is considered dangerous by lots of security experts. When this infection is active,…

2 months ago