Malware

Should I remove “Cerbu.73838”?

Malware Removal

The Cerbu.73838 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Cerbu.73838 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial binary language: Russian
  • Anomalous binary characteristics

How to determine Cerbu.73838?


File Info:

crc32: 8E7DC1D4
md5: 8b5777a9c4497fed1d9387d5070c6480
name: 8B5777A9C4497FED1D9387D5070C6480.mlw
sha1: 544a27b14213525b1e36d95bc34710f1cf07b875
sha256: 55eee40a997443bc22b43a6b818d38e6a8f01dfe62d8b73ef50e34109e82df49
sha512: 332d2cb6e85b23cc9e1b0388ea999f6af6f94450ca10f870361783ff86c911b2552cc4422fb018d0aef1c62a253e8197fd5f00cdcda8e4b1978d9af3059b6762
ssdeep: 1536:NL91Da0Dnp+ckFFcdswE6oGlesJ5/3AjwOPHQJ1ebcNpNDoc:NLDQckFydgPGl/j3y2sbcNpNDl
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2011
InternalName: mailope
FileVersion: 1, 0, 3, 1
OriginalFilename: mailope.exe
ProductVersion: 1, 0, 3, 1
Translation: 0x0419 0x04b0

Cerbu.73838 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
DrWebTrojan.Winlock.8128
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Urausy.C
ALYacGen:Variant.Cerbu.73838
CylanceUnsafe
ZillyaTrojan.LockScreen.Win32.8142
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaRansom:Win32/Urausy.1cd8ec6d
K7GWTrojan ( 0040f3c81 )
K7AntiVirusTrojan ( 0040f3c81 )
CyrenW32/FakeAlert.WR.gen!Eldorado
SymantecTrojan.Ransomlock.Q!g1
ESET-NOD32Win32/LockScreen.APR
APEXMalicious
AvastWin32:LockScreen-WO [Trj]
ClamAVWin.Trojan.Generickdz-9753566-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Cerbu.73838
NANO-AntivirusTrojan.Win32.RiskGen.cqontg
ViRobotTrojan.Win32.Foreign.90112
SUPERAntiSpywareTrojan.Agent/Gen-FakeAlert
MicroWorld-eScanGen:Variant.Cerbu.73838
TencentMalware.Win32.Gencirc.10c87f2f
Ad-AwareGen:Variant.Cerbu.73838
SophosML/PE-A + Troj/Agent-XLG
ComodoTrojWare.Win32.Rogue.APR@4wveuf
BitDefenderThetaGen:NN.ZexaF.34628.fm0@a0LGi0fi
VIPRETrojan.Win32.FakeAV.ka (v)
TrendMicroTROJ_FAKEAV.SMB5
McAfee-GW-EditionBehavesLike.Win32.Generic.mh
FireEyeGeneric.mg.8b5777a9c4497fed
EmsisoftGen:Variant.Cerbu.73838 (B)
JiangminTrojan/Generic.avxit
WebrootW32.Rogue.Gen
AviraTR/Dropper.Gen7
eGambitGeneric.Malware
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:Win32/Urausy.C
AegisLabTrojan.Win32.Generic.lJdd
GDataGen:Variant.Cerbu.73838
AhnLab-V3Trojan/Win32.Kryptik.R63711
Acronissuspicious
McAfeeRansom-FBQX!8B5777A9C449
MAXmalware (ai score=100)
VBA32BScope.Trojan.Winlock
MalwarebytesTrojan.FakeAV
PandaTrj/Resdec.HEU
TrendMicro-HouseCallTROJ_FAKEAV.SMB5
RisingRansom.Urausy!8.2B7 (CLOUD)
YandexTrojan.GenAsa!lcerYpFrvYA
IkarusTrojan.Win32.FakeAV
FortinetW32/FakeAV.SE!tr
AVGWin32:LockScreen-WO [Trj]
Qihoo-360Win32/Ransom.Urausy.HgIASQ0A

How to remove Cerbu.73838?

Cerbu.73838 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment