Malware

Should I remove “Cerbu.74086 (B)”?

Malware Removal

The Cerbu.74086 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Cerbu.74086 (B) virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Greek
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the shellcode patterns malware family
  • Anomalous binary characteristics
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Cerbu.74086 (B)?


File Info:

name: 8E1D01383270521EC758.mlw
path: /opt/CAPEv2/storage/binaries/37f63769515a72732ccc4a68ce08aa20e6fb277823556560d98d75a89d5daa5b
crc32: B85B6350
md5: 8e1d01383270521ec7586ece53764c30
sha1: da25931cbcfa7b4445124504dea734136f39742b
sha256: 37f63769515a72732ccc4a68ce08aa20e6fb277823556560d98d75a89d5daa5b
sha512: 95cf539e5cdd816d78bc8696e17ccd03cd9987b1f98fe5dc6cbcbd2db59698a8aaa48f9490f0266005808d238571bf20701cc4878b12869bfb6d8902328e94a0
ssdeep: 3072:8idCNbbURSYja5HLmki3iSD+cJplHhpQ7RxPUD38+E6AUdFIiHTE8jDbkjlA6UYx:8vz1q4S6cJpFhpDM+E6Aa3QssA6rx
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11324123422C0BD31CAFB66B59C4B2F5B81E634672F56510BCFD459F8A8813AB17A170A
sha3_384: fce74a55734d4e42407a8351933492614f5f043a50488c8df20ae64f89a0de1db6082be8ab86adf6df0dde27989f8099
ep_bytes: 558bec81ecd4000000b86c0000008945
timestamp: 2012-11-03 08:50:03

Version Info:

CompanyName: IirDeramker S.R.L.
LegalCopyright: Copyright (C) 2119
FileDescription: IirDeramker Antibibus Scagnur
InternalName: GUIScanner
OriginalFilename: uiscen.exe
FileVersion: 10,0,15,1
ProductName: IirDeramker 2216
ProductVersion: 10,1,15,304
Translation: 0x0409 0x04b0

Cerbu.74086 (B) also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Cerbu.74086
FireEyeGeneric.mg.8e1d01383270521e
CAT-QuickHealFraudTool.Security
SkyhighBehavesLike.Win32.Expiro.dc
McAfeePWSZbot-FUQ!8E1D01383270
MalwarebytesBackdoor.Agent.RND
ZillyaTrojan.Zbot.Win32.147466
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0040f7991 )
AlibabaTrojanSpy:Win32/PWSZbot.109de0d3
K7GWTrojan ( 004e68751 )
BaiduWin32.Trojan.Kryptik.dk
VirITTrojan.Win32.DownLoader9.SVG
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Spy.Zbot.ABA
CynetMalicious (score: 100)
APEXMalicious
AvastWin32:Agent-AUYW [Trj]
ClamAVWin.Trojan.Zbot-61523
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Cerbu.74086
NANO-AntivirusTrojan.Win32.Zbot.cstkoe
SUPERAntiSpywareTrojan.Agent/Gen-Falprod
TencentTrojan.Win32.Zbot.c
EmsisoftGen:Variant.Cerbu.74086 (B)
F-SecureTrojan.TR/Crypt.ZPACK.Gen2
DrWebTrojan.DownLoader9.12720
VIPREGen:Variant.Cerbu.74086
TrendMicroTSPY_ZBOT.SMJ32
Trapminemalicious.high.ml.score
SophosTroj/Zbot-HGR
JiangminTrojanSpy.Zbot.ebff
WebrootW32.Infostealer.Zeus
VaristW32/Zbot.OY.gen!Eldorado
AviraTR/Crypt.ZPACK.Gen2
MAXmalware (ai score=100)
Antiy-AVLTrojan[Spy]/Win32.Zbot
KingsoftWin32.Trojan.Generic.a
MicrosoftPWS:Win32/Zbot
XcitiumTrojWare.Win32.Kryptik.BTE@56nczg
ArcabitTrojan.Cerbu.D12166
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Cerbu.74086
GoogleDetected
AhnLab-V3Trojan/Win32.Zbot.R95811
VBA32BScope.Malware-Cryptor.Hlux
ALYacGen:Variant.Cerbu.74086
TACHYONTrojan-Spy/W32.ZBot.217728
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTSPY_ZBOT.SMJ32
RisingSpyware.Zbot!1.A1BA (CLASSIC)
YandexTrojanSpy.Zbot!zqevo72kCkk
IkarusTrojan-PWS.Win32.Zbot
MaxSecureTrojan.Yakes.dyla
FortinetW32/Kryptik.CAAF!tr
BitDefenderThetaGen:NN.ZexaF.36804.nq1@aOPG1MjO
AVGWin32:Agent-AUYW [Trj]
DeepInstinctMALICIOUS
alibabacloudTrojan[spy]:Win/Zbot.ABA

How to remove Cerbu.74086 (B)?

Cerbu.74086 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment