Ransom Trojan

About “Trojan.Ransom.Cerber.EG” infection

Malware Removal

The Trojan.Ransom.Cerber.EG is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Ransom.Cerber.EG virus can do?

  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.Ransom.Cerber.EG?


File Info:

crc32: 9E8FD40C
md5: b263967fe009e71de4970e6345198709
name: B263967FE009E71DE4970E6345198709.mlw
sha1: a8e8f4d6e8bbf1d0490b7f3b301cb47b31f977be
sha256: 7e4650206de3825dd129dcc85bc3c3c27dcf3869c7083a9490061f9ca6af6625
sha512: 67e446b68368978340ec28d0cd5f2d1e60c53a9f7c061a4ff9501391654ca47116bb0844941e16e2e9705b8a7a324b39a36344a54c4a2da3e93e67533069c1cc
ssdeep: 3072:MAe+3aJpgWXTBuKYn44qkuVpck/V9vO6Pz5l+T755Rio+ocUV6kDeJ5PiU:PB+pgUvZ4MTV9G6bOTTRV+oZV6+evqU
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: John T. Haller
InternalName: KeePass Portable
FileVersion: 1.5.3.0
CompanyName: PortableApps.com
LegalTrademarks: PortableApps.com is a Trademark of Rare Ideas, LLC.
Comments: Allows KeePass to be run from a removable drive. For additional details, visit PortableApps.com/KeePassPortable
ProductName: KeePass Portable
ProductVersion: 1.5.3.0
FileDescription: KeePass Portable
OriginalFilename: KeePassPortable.exe
Translation: 0x0409 0x04b0

Trojan.Ransom.Cerber.EG also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
CAT-QuickHealRansom.Cerber.B
ALYacTrojan.Ransom.Cerber.EG
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (D)
K7GWTrojan ( 005013af1 )
K7AntiVirusTrojan ( 005013af1 )
SymantecPacked.NSISPacker!g4
ESET-NOD32Win32/Filecoder.Cerber.E
ZonerTrojan.Win32.52144
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan-Ransom.Win32.Agent.gen
BitDefenderTrojan.Ransom.Cerber.EG
NANO-AntivirusTrojan.Nsis.Zerber.ekfoag
MicroWorld-eScanTrojan.Ransom.Cerber.EG
TencentWin32.Trojan.Filecoder.Pdlr
SophosML/PE-A + Mal/Cerber-AA
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_CERBER.F116LR
McAfee-GW-EditionBehavesLike.Win32.ICLoader.dc
FireEyeGeneric.mg.b263967fe009e71d
EmsisoftTrojan.Ransom.Cerber.EG (B)
MicrosoftRansom:Win32/Genasom!rfn
GDataTrojan.Ransom.Cerber.EG
AhnLab-V3Trojan/Win32.Cerber.R192447
McAfeeArtemis!B263967FE009
MAXmalware (ai score=81)
MalwarebytesRansom.Cerber.Generic
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom_CERBER.F116LR
IkarusTrojan-Ransom.Cerber
FortinetW32/Injector.OV!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Ransom.Cerber.EG?

Trojan.Ransom.Cerber.EG removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment