Malware

Cerbu.65029 (B) (file analysis)

Malware Removal

The Cerbu.65029 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Cerbu.65029 (B) virus can do?

  • Sample contains Overlay data
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Cerbu.65029 (B)?


File Info:

name: 86D37EF2DC80EE3A02D7.mlw
path: /opt/CAPEv2/storage/binaries/7d481f3eae605c90c34037bb9e2f749c9044b814df2a95ffab68cbe27deb5ee4
crc32: 00C837CA
md5: 86d37ef2dc80ee3a02d756bace55c6fc
sha1: 2526c9edf825fa22f5f90c33afd4a6829d29ad23
sha256: 7d481f3eae605c90c34037bb9e2f749c9044b814df2a95ffab68cbe27deb5ee4
sha512: fcb8c6b35b8c0e7af587d826bb61e9baf689b86578e537305b344dbec3e6cb3e6caedeb4b8074cf41cccfac4aaaf73b7294d393db7b8250973796f220d1d8036
ssdeep: 6144:D8PWogPmoQus853CektvoeGbfB4NuVSzruyjRvs+9/OKkTjt2+WGhAq2Hl41ml81:D8OofoeGbfB4NuV4Fvs+9GLTY272Hl45
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T152544CFB6DF6CE17A48681E2B25A14B1B5DF0778C3A84EB4D3C4265C62C944ADD8CC6C
sha3_384: 57e2b884dc869ef0c52f78e9e52163754a9fa33deb3647b2740f71398660b0a5ed1ae713789529e860e05048fdd027d0
ep_bytes: 5589e583ec08c7042402000000ff154c
timestamp: 2014-02-27 06:41:59

Version Info:

0: [No Data]

Cerbu.65029 (B) also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanGen:Variant.Cerbu.65029
FireEyeGeneric.mg.86d37ef2dc80ee3a
SkyhighBehavesLike.Win32.Glupteba.dh
McAfeeArtemis!86D37EF2DC80
Cylanceunsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 004993691 )
AlibabaWorm:Win32/Mira.c22a8081
K7GWTrojan ( 004993691 )
Cybereasonmalicious.df825f
ArcabitTrojan.Cerbu.DFE05
BitDefenderThetaGen:NN.ZexaF.36792.syY@aKopAmp
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32probably a variant of Win32/Mira.A
CynetMalicious (score: 100)
APEXMalicious
BitDefenderGen:Variant.Cerbu.65029
AvastWin32:Evo-gen [Trj]
TencentWin32.Trojan.Beaugrit.Aujl
EmsisoftGen:Variant.Cerbu.65029 (B)
F-SecureTrojan.TR/Beaugrit.gfd
VIPREGen:Variant.Cerbu.65029
Trapminemalicious.high.ml.score
SophosW32/Mira-B
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Agent.iezf
WebrootW32.Gen.Bt
VaristW32/TrojanP.B
AviraTR/Beaugrit.gfd
Antiy-AVLTrojan/Win32.Fuerboos
Kingsoftmalware.kb.a.1000
XcitiumWorm.Win32.Mira.SG@72k617
MicrosoftTrojan:Win32/Mira
GDataGen:Variant.Cerbu.65029
GoogleDetected
AhnLab-V3Malware/Win32.RL_Generic.R289710
ALYacGen:Variant.Cerbu.65029
MAXmalware (ai score=81)
MalwarebytesGeneric.Malware/Suspicious
RisingTrojan.Generic@AI.100 (RDML:OJIePBzRyGynDNAYVPnyJQ)
IkarusTrojan.Win32.Heur
MaxSecureTrojan.Malware.74543700.susgen
FortinetW32/Mira.B!tr
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Cerbu.65029 (B)?

Cerbu.65029 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment