Malware

How to remove “Cerbu.28855 (B)”?

Malware Removal

The Cerbu.28855 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Cerbu.28855 (B) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Tries to unhook or modify Windows functions monitored by Cuckoo

How to determine Cerbu.28855 (B)?


File Info:

crc32: C1D4E7B7
md5: 1a5da2eeb2b3d20bdc0fa767b62be71c
name: 1A5DA2EEB2B3D20BDC0FA767B62BE71C.mlw
sha1: 919c41add2d4020f664f3445c421f1fb24ad37f2
sha256: 33c77de897aa7c21acca3f3b9a5bf41806511474da8c7f030a0edba9e5d37eb2
sha512: 50e64ce0348c375a24d2f93bbd7776e64096cb15a5b7f362b25a68a4766e2f0a0d719b5fb1a33ea2ae5b8bf8fea0319708289e10d757252b5d0ee450e75f6533
ssdeep: 24576:oGOYws3QZZl7VZcUH85ezzhDTLcfqo2lbJpZ:oZs4lAUHDNDTLDoyp
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Cerbu.28855 (B) also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005246d51 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Cerbu.28855
CylanceUnsafe
CrowdStrikewin/malicious_confidence_90% (W)
BitDefenderGen:Variant.Cerbu.28855
K7GWTrojan ( 00013a151 )
Cybereasonmalicious.eb2b3d
CyrenW32/Trojan.CLL.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.FlyStudio.AC potentially unwanted
APEXMalicious
ClamAVWin.Malware.Generic-9820446-0
MicroWorld-eScanGen:Variant.Cerbu.28855
Ad-AwareGen:Variant.Cerbu.28855
SophosGeneric ML PUA (PUA)
ComodoWorm.Win32.Dropper.RA@1qraug
BitDefenderThetaGen:NN.ZexaF.34690.DrW@aCU9r1ib
McAfee-GW-EditionBehavesLike.Win32.Dropper.th
FireEyeGeneric.mg.1a5da2eeb2b3d20b
EmsisoftGen:Variant.Cerbu.28855 (B)
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_100%
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Cerbu.D70B7
GDataGen:Variant.Cerbu.28855
AhnLab-V3Malware/Win32.Generic.C1664165
Acronissuspicious
McAfeeGenericRXAA-AA!1A5DA2EEB2B3
MAXmalware (ai score=80)
VBA32BScope.Trojan.Tiggre
MalwarebytesTrojan.MalPack.FlyStudio
TrendMicro-HouseCallTROJ_GEN.R005H09ED21
RisingMalware.Heuristic!ET#100% (RDMK:cmRtazp+SQ0kY9fOM+jbQffpBvWT)
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/CoinMiner.65CA!tr
Paloaltogeneric.ml

How to remove Cerbu.28855 (B)?

Cerbu.28855 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment