Malware

Cerbu.4134 (B) removal

Malware Removal

The Cerbu.4134 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Cerbu.4134 (B) virus can do?

  • Authenticode signature is invalid

How to determine Cerbu.4134 (B)?


File Info:

name: 2511BCE121B8D04699AF.mlw
path: /opt/CAPEv2/storage/binaries/4de87fb286f629125472bc3a5fa51c461ea37a90a4a717994c6413554f7739d7
crc32: 26885940
md5: 2511bce121b8d04699aff1189de14a29
sha1: 6020aa86ad51c8630ec20a724b0c2b269af0571b
sha256: 4de87fb286f629125472bc3a5fa51c461ea37a90a4a717994c6413554f7739d7
sha512: 2b19c781b39e8f3c1064dc044a0dfd3fa96579527316bff5eaee39b93d8e8fdde3b30c41f98b7b30ab32fba730b8d45d5f2d792a564b2ace78f10a8cc6b49aae
ssdeep: 6144:Yp/UxJvaVIUOYJHn8RnIEPXBByA0RVqnQQE:LxJvaVvOSHnUIEfR0R8nQ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16F442A2571E75479D0632570066DB3F9E7B9F8A44D69F71B3780CB292A31802CB78B8B
sha3_384: 387c1a3ba65e64e17090a1bb8cc632d08ad326d087fd782d9b35f109d848c425c8d2d79a2e92ee49a5f2bc221ef791de
ep_bytes: e826f9ffff6a5868b0f70001e82c30ff
timestamp: 2004-04-17 13:49:37

Version Info:

CompanyName: Microsoft Corporation
FileDescription: WMI Provider Host
FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
InternalName: Wmiprvse.exe
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: Wmiprvse.exe
ProductName: Microsoft® Windows® Operating System
ProductVersion: 6.1.7601.17514
Translation: 0x0409 0x04b0

Cerbu.4134 (B) also known as:

tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Cerbu.4134
FireEyeGeneric.mg.2511bce121b8d046
ALYacGen:Variant.Cerbu.4134
CylanceUnsafe
Cybereasonmalicious.121b8d
BitDefenderThetaGen:NN.ZexaF.34592.pq0@ailQ9Bki
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
APEXMalicious
BitDefenderGen:Variant.Cerbu.4134
AvastFileRepMalware [Misc]
Ad-AwareGen:Variant.Cerbu.4134
EmsisoftGen:Variant.Cerbu.4134 (B)
VIPREGen:Variant.Cerbu.4134
Trapminemalicious.high.ml.score
SophosGeneric ML PUA (PUA)
GDataGen:Variant.Cerbu.4134
AviraTR/Patched.Ren.Gen
CynetMalicious (score: 100)
MAXmalware (ai score=85)
MalwarebytesMalware.Heuristic.1001
RisingTrojan.Occamy!8.F1CD (RDMK:cmRtazoxXsPi1WVVecPWuXChaCsQ)
MaxSecureTrojan.Malware.300983.susgen
AVGFileRepMalware [Misc]
CrowdStrikewin/malicious_confidence_70% (D)

How to remove Cerbu.4134 (B)?

Cerbu.4134 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment