Malware

Cerbu.94758 (B) (file analysis)

Malware Removal

The Cerbu.94758 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Cerbu.94758 (B) virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Cerbu.94758 (B)?


File Info:

name: 8FE7FB0DBA0846D635A9.mlw
path: /opt/CAPEv2/storage/binaries/70e604aac0ae650fb2ebb1fa611c7a6af8e9d3337db9611bbe1238a940c01b08
crc32: 13E9E088
md5: 8fe7fb0dba0846d635a95c87070ebd01
sha1: 98570c8723442608e7beab8b95a4992a16778e90
sha256: 70e604aac0ae650fb2ebb1fa611c7a6af8e9d3337db9611bbe1238a940c01b08
sha512: 1e3258e587773ee2d614013e8f11aa476c239f90becaf93956a6ce02139fc8b4bcbb580a7b5d537deeceb933b85e05767a2fc68e7bd1ffd07780bee15a6131ca
ssdeep: 3072:WCe8KEtLcMIw8Nv/ryiDdjeTg2BwqgSj8ZtgD1I75QL5nm/Jp6rXzTJ:WCestLcMIzNzyCdiMe5xq1CBm/JGTJ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19EE36CB6F5C0D437C26E1BF88D4F90A9E42A7F112E1D28867AED0D0D8B7C6C136592E5
sha3_384: 0f45fee431d1e5e50e3fd27b8171acc7b18afb393faa7ef8a307d692262f0387888a98330847483712af8b3648274246
ep_bytes:
timestamp: 1997-12-16 11:26:57

Version Info:

0: [No Data]

Cerbu.94758 (B) also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanGen:Variant.Cerbu.94758
FireEyeGeneric.mg.8fe7fb0dba0846d6
McAfeeGenericRXKE-VC!8FE7FB0DBA08
Cybereasonmalicious.dba084
CyrenW32/Damaged_File.E.gen!Eldorado
APEXMalicious
ClamAVWin.Trojan.Renamer-9857867-0
BitDefenderGen:Variant.Cerbu.94758
Ad-AwareGen:Variant.Cerbu.94758
EmsisoftGen:Variant.Cerbu.94758 (B)
ComodoHeur.Corrupt.PE@1z141z3
DrWebTrojan.Inject2.58276
McAfee-GW-EditionBehavesLike.Win32.Picsys.ch
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Cerbu.94758
eGambitUnsafe.AI_Score_61%
MAXmalware (ai score=84)
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ALYacGen:Variant.Cerbu.94758
MalwarebytesMalware.AI.3634926486
RisingTrojan.Win32.Renamer.g (CLASSIC)
IkarusDropper.Patched
FortinetW32/Injector.2F48!tr
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Cerbu.94758 (B)?

Cerbu.94758 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment