Malware

Should I remove “Cerbu.202010 (B)”?

Malware Removal

The Cerbu.202010 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Cerbu.202010 (B) virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Anomalous binary characteristics
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Cerbu.202010 (B)?


File Info:

name: D51C9A4F2FDA83C48DFA.mlw
path: /opt/CAPEv2/storage/binaries/33a637511f2e19e4d388fdc0637b9edb980b55afa2f41fc575e30c6a84f1ebc4
crc32: 16620824
md5: d51c9a4f2fda83c48dfa50fb5fd96ee3
sha1: 532111822ab27d4e1087a78be7eaf54e073ef61c
sha256: 33a637511f2e19e4d388fdc0637b9edb980b55afa2f41fc575e30c6a84f1ebc4
sha512: 133d327a8ab224e01c7aee85e1a4bf0c3ac2bace4d36037ed038260b8ac687a93bd19a072186dddeedd8ac82421d6634e764e33653c696f6ba81d04304c2d8df
ssdeep: 192:XvxJqAPhpeS1ZK4O3CDHp1QyJXzMYu+KYp5U4ubvRxK:JUAPk21QGMn+KYpu4uFQ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12F32C900BC419A24E5E384B84571D396F86D2E340769A5E353F3BC879CB96D13238A5B
sha3_384: 6c5d01f5706f8f0e86fc9ae695b7424d4d5bcfb9a82a1a5d46f7c793a0098ae3671d4c558b4b0a579dd85ccbb3d270b3
ep_bytes: 558bec68f0134000e8d3ffffff83c404
timestamp: 1970-01-31 21:22:47

Version Info:

0: [No Data]

Cerbu.202010 (B) also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Vtflooder.4!c
AVGWin32:Evo-gen [Trj]
tehtrisGeneric.Malware
DrWebTrojan.Flood.22062
MicroWorld-eScanGen:Variant.Cerbu.202010
FireEyeGeneric.mg.d51c9a4f2fda83c4
SkyhighBehavesLike.Win32.Downloader.lt
McAfeeGenericRXGG-SY!D51C9A4F2FDA
Cylanceunsafe
ZillyaTrojan.Vtflooder.Win32.915
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005a74e21 )
AlibabaTrojan:Win32/Vtflooder.493
K7GWTrojan ( 005a74e21 )
Cybereasonmalicious.f2fda8
BitDefenderThetaGen:NN.ZexaF.36802.amW@aeKTK5i
SymantecDownloader.Upatre
Elasticmalicious (high confidence)
ESET-NOD32Win32/TrojanClicker.Tiny.NAM
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Vtflooder-9783271-0
KasperskyTrojan.Win32.Vtflooder.cft
BitDefenderGen:Variant.Cerbu.202010
NANO-AntivirusTrojan.Win32.Crypted.dbpklq
SUPERAntiSpywareTrojan.Agent/Gen-Vtflooder
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.VtFlooder.a
TACHYONTrojan/W32.Vtflooder.11776
SophosTroj/Agent-AHNL
F-SecureTrojan.TR/Crypt.XPACK.Gen
BaiduWin32.Trojan-Downloader.Tiny.c
VIPREGen:Variant.Cerbu.202010
TrendMicroTrojan.Win32.VFLOODER.SM
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Cerbu.202010 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Badur.cky
VaristW32/Agent.CFW.gen!Eldorado
AviraTR/Crypt.XPACK.Gen
Antiy-AVLVirus/Win32.Expiro.imp
KingsoftWin32.Trojan.Vtflooder.cft
MicrosoftTrojan:Win32/Vflooder.B
XcitiumTrojWare.Win32.TrojanDownloader.Tiny.N@7sc62q
ArcabitTrojan.Cerbu.D3151A
ZoneAlarmTrojan.Win32.Vtflooder.cft
GDataWin32.Trojan.PSE.16MMF44
GoogleDetected
AhnLab-V3Trojan/Win32.RL_Vtflooder.R273172
Acronissuspicious
VBA32Trojan.Badur
ALYacGen:Variant.Cerbu.202010
MAXmalware (ai score=88)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallTrojan.Win32.VFLOODER.SM
RisingTrojan.Vflooder!1.A171 (CLASSIC)
IkarusTrojan.Win32.TrojanClicker
MaxSecureTrojan.Badur.ilcp
FortinetW32/Agent.D382!tr
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)
alibabacloudTrojan:Win/Vflooder.A(dyn)

How to remove Cerbu.202010 (B)?

Cerbu.202010 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment