Malware

Cerbu.91704 (B) removal

Malware Removal

The Cerbu.91704 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Cerbu.91704 (B) virus can do?

  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine Cerbu.91704 (B)?


File Info:

crc32: 53B002D6
md5: 1df43b892374bd0f47556e854ed988f3
name: 1DF43B892374BD0F47556E854ED988F3.mlw
sha1: fe575ad45b486f41d36b7b105055cd6022ecd831
sha256: 29ffb167463e0909846fead97df90d4afdc4553de30e8a059cfc7a0db4051110
sha512: c6c6cf618a622fc267b5eab97ebe8aabd2d9e2d9293941bac24457a9b262588fc7d589ec81d3719099529223c2bde9bfd2f6997380f784e55955e5bdf4f4e0fb
ssdeep: 3072:Zf1BDZ0kVB67Duw9AMc8bXEQxIo8EXChBLva48n7CntZ62V4e517Zjbh7eM4XSSf:Z9X0GWUuI7EXCLLvaT7QV4e5PbhX4XpJ
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright: Copyright aphasia
FileVersion: 43.68.9.30
CompanyName: Tayabas Ayta
LegalTrademarks: album
Comments: academic department
ProductName: Template Method Pattern
FileDescription: postictal
Translation: 0x0409 0x04e4

Cerbu.91704 (B) also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanGen:Variant.Cerbu.91704
FireEyeGeneric.mg.1df43b892374bd0f
Qihoo-360Win32/Backdoor.Androm.HyoDiLsA
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Cerbu.91704
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.92374b
CyrenW32/Injector.AEY.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:InjectorX-gen [Trj]
KasperskyTrojan.Win32.Fsysna.hvgs
AlibabaTrojan:Win32/Fsysna.7ee49c78
NANO-AntivirusTrojan.Win32.Fsysna.imokfs
AegisLabTrojan.Win32.Androm.4!c
TencentWin32.Trojan.Fsysna.Edom
EmsisoftGen:Variant.Cerbu.91704 (B)
F-SecureTrojan.TR/Injector.kacwg
DrWebTrojan.Siggen9.56514
McAfee-GW-EditionBehavesLike.Win32.Vopak.cc
SophosTroj/Kryptik-TI
SentinelOneStatic AI – Suspicious PE
AviraTR/Injector.imswp
KingsoftWin32.Troj.Fsysna.hv.(kcloud)
MicrosoftTrojan:Win32/Androm.RF!MTB
GridinsoftTrojan.Win32.Downloader.sa
ArcabitZum.Androm.1
ZoneAlarmHEUR:Trojan.Win32.Crypt.gen
GDataMSIL.Backdoor.ASyncRAT.IFDTPM
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.RL_Androm.R367639
McAfeeArtemis!1DF43B892374
MAXmalware (ai score=80)
MalwarebytesTrojan.Injector.DL.Generic
PandaTrj/CI.A
ESET-NOD32a variant of Win32/Injector.EORU
RisingTrojan.Injector!8.C4 (CLOUD)
IkarusTrojan.Win32.Injector
FortinetW32/Injector.EONL!tr
AVGWin32:InjectorX-gen [Trj]
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Cerbu.91704 (B)?

Cerbu.91704 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment