Malware

How to remove “Ser.Cerbu.892”?

Malware Removal

The Ser.Cerbu.892 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ser.Cerbu.892 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Ser.Cerbu.892?


File Info:

crc32: 6BC56339
md5: f8b5067142fe6d30d5ccbe838ce0c031
name: F8B5067142FE6D30D5CCBE838CE0C031.mlw
sha1: 165d005a73c43edbd794d9f25c61fa1ed84a59d1
sha256: c644c551cb1970fce82506cda61f6b302568324a5ffc5a4cf1e50b581367947f
sha512: 3a231f8935fb448c2761541d7928b0ce2c53c392e30b3741f0fc0843a37cd3a4b4ba14d2e91d1721ce9c8550e2520f0ebe04dbf1c8b83d55ce2a85e25349abf7
ssdeep: 24576:hwMOmlEvLPHhu7sGjlvDs1Vwt4EhUKHJxtMXs3mdKwCAlcwTce4Uae:eMOLvjHheBmwt4Ed/tMXsWdKwCccbexP
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: olbcwguikl
FileVersion: 1.00
CompanyName: Asinosan
ProductName: Maxiolom
ProductVersion: 1.00
OriginalFilename: olbcwguikl.exe

Ser.Cerbu.892 also known as:

K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
DrWebTrojan.Winlock.6173
MicroWorld-eScanGen:Variant.Ser.Cerbu.892
ALYacGen:Variant.Ser.Cerbu.892
CylanceUnsafe
ZillyaTrojan.PornoAsset.Win32.15923
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaRansom:Win32/PornoAsset.66f2b59d
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.142fe6
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/LockScreen.AIV
APEXMalicious
AvastSf:Crypt-ER [Trj]
KasperskyTrojan-Ransom.Win32.PornoAsset.cygr
BitDefenderGen:Variant.Ser.Cerbu.892
NANO-AntivirusTrojan.Win32.PornoAsset.chuwdv
TencentMalware.Win32.Gencirc.114c7bb1
Ad-AwareGen:Variant.Ser.Cerbu.892
SophosML/PE-A + Mal/Ransom-BT
ComodoTrojWare.Win32.Injector.ANJM@52gqk7
BitDefenderThetaGen:NN.ZevbaF.34058.wn3@aCBy!Jmi
VIPRETrojan.Win32.LockScreen.aiv (v)
McAfee-GW-EditionBehavesLike.Win32.ICLoader.tc
FireEyeGeneric.mg.f8b5067142fe6d30
EmsisoftGen:Variant.Ser.Cerbu.892 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/PornoAsset.skg
AviraHEUR/AGEN.1107467
eGambitGeneric.Malware
Antiy-AVLTrojan/Generic.ASMalwS.47EB9A
KingsoftWin32.Troj.Undef.(kcloud)
ZoneAlarmTrojan-Ransom.Win32.PornoAsset.cygr
GDataGen:Variant.Ser.Cerbu.892
AhnLab-V3Trojan/Win32.Agent.R83144
McAfeeArtemis!F8B5067142FE
MAXmalware (ai score=100)
VBA32Backdoor.VB.Poison
PandaTrj/Genetic.gen
YandexTrojan.GenAsa!3Gh6Ds+DMUY
IkarusTrojan.Win32.LockScreen
FortinetW32/Injector.ALXK!tr
AVGSf:Crypt-ER [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.PornoAsset.HwMAEpsA

How to remove Ser.Cerbu.892?

Ser.Cerbu.892 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment