Ransom

About “Ransom.Cerber.767” infection

Malware Removal

The Ransom.Cerber.767 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom.Cerber.767 virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

How to determine Ransom.Cerber.767?


File Info:

crc32: 4D60BA01
md5: ae1a250149b1c9667c451d17190ff849
name: AE1A250149B1C9667C451D17190FF849.mlw
sha1: 0c961f372454af9d2403759f290d78f49c594558
sha256: 1537c0a36e4b65cca48754e8005a6e29a6cf152c086ef44f6ebce2c41378c742
sha512: 2b1f054adefd66bd429fc5f0f959aa50d35cb544e84de3bb5a6fc7e2d99f0562e42c77a9f38c3f3cf8f4d944f7963e08142b3744ce5a6afed728e3aa550d9cde
ssdeep: 768:tbnWMMOscjYnupoVASbrPDFhsMcPNqaqUsbszc5GVpt7Hc9dndnBgx:VWMMObjYntVt7Ls77Z8dn
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Ransom.Cerber.767 also known as:

BkavW32.AIDetect.malware1
DrWebTrojan.PWS.Stealer.24943
CynetMalicious (score: 100)
CAT-QuickHealTrojanSpy.Stealer
ALYacGen:Variant.Ransom.Cerber.767
CylanceUnsafe
ZillyaTrojan.Stealer.Win32.924
SangforTrojan.Win32.Save.a
Cybereasonmalicious.149b1c
ESET-NOD32a variant of Win32/Kryptik.GLKM
APEXMalicious
AvastWin32:Malware-gen
KasperskyVHO:Trojan-Spy.Win32.Stealer.gen
BitDefenderGen:Variant.Ransom.Cerber.767
NANO-AntivirusTrojan.Win32.Stealer.fiwpfs
MicroWorld-eScanGen:Variant.Ransom.Cerber.767
Ad-AwareGen:Variant.Ransom.Cerber.767
SophosML/PE-A
BitDefenderThetaGen:NN.ZexaF.34758.cmGfa0S8wVp
McAfee-GW-EditionBehavesLike.Win32.Generic.pc
FireEyeGen:Variant.Ransom.Cerber.767
EmsisoftGen:Variant.Ransom.Cerber.767 (B)
JiangminTrojanSpy.Stealer.bye
WebrootW32.Malware.Heur
AviraHEUR/AGEN.1124664
Antiy-AVLTrojan/Generic.ASMalwS.28680E5
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Ransom.Cerber.767
GDataGen:Variant.Ransom.Cerber.767
AhnLab-V3Trojan/Win32.Ursnif.R238533
McAfeeGenericRXAA-AA!AE1A250149B1
MAXmalware (ai score=83)
VBA32BScope.Trojan.CryptInject
IkarusTrojan-Ransom.Zerber
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Injector.EAQW!tr
AVGWin32:Malware-gen

How to remove Ransom.Cerber.767?

Ransom.Cerber.767 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment