Ransom Trojan

Trojan.Ransom.Cerber.ER removal instruction

Malware Removal

The Trojan.Ransom.Cerber.ER is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Ransom.Cerber.ER virus can do?

  • Anomalous binary characteristics

How to determine Trojan.Ransom.Cerber.ER?


File Info:

crc32: 1336D906
md5: 3e20258dba346aba8c807f8eca182a77
name: 3E20258DBA346ABA8C807F8ECA182A77.mlw
sha1: cd271138da149cf8c6abc36f624181d12833899f
sha256: b7afbfc34296a251b70a1735e507ab7f5cf8fbb8f4f4a5b44c9332ef6b3c5b29
sha512: ee93f855e9b9db4b2af706e12d3a07401bf8eef61914b3985fb571e6761ae903c62dca7aa8a8143b408fa805caf96f86ce816aef024b0cba5f5f95a6f8f8386c
ssdeep: 3072:MAe+3aJpgWXTBucMzjrRe5bklV1CZXYXFQzg1Yl0xiR/EU1KsIdoWxMBWNQ3ZJJp:PB+pgUubguVcrcm0u/10/dRgdzs/j2
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright: John T. Haller
InternalName: FileZilla Portable
FileVersion: 1.6.10.0
CompanyName: PortableApps.com
LegalTrademarks: PortableApps.com is a Trademark of Rare Ideas, LLC.
Comments: Allows FileZilla to be run from a removable drive. For additional details, visit PortableApps.com/FileZillaPortable
ProductName: FileZilla Portable
ProductVersion: 1.6.10.0
FileDescription: FileZilla Portable
OriginalFilename: FileZillaPortable.exe
Translation: 0x0409 0x04b0

Trojan.Ransom.Cerber.ER also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00501bed1 )
Elasticmalicious (high confidence)
DrWebTrojan.Inject2.40173
CynetMalicious (score: 100)
CAT-QuickHealRansom.Cerber.B
ALYacTrojan.Ransom.Cerber.ER
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.8806
SangforRansom.Win32.Zerber.esej
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Zerber.ebcd4433
K7GWTrojan ( 00501bed1 )
Cybereasonmalicious.dba346
SymantecRansom.Cerber
ESET-NOD32NSIS/Injector.PG
APEXMalicious
AvastWin32:Trojan-gen
KasperskyTrojan-Ransom.Win32.Zerber.esej
BitDefenderTrojan.Ransom.Cerber.ER
NANO-AntivirusTrojan.Nsis.Zerber.ekfpwd
MicroWorld-eScanTrojan.Ransom.Cerber.ER
TencentWin32.Trojan.Zerber.Lkxk
Ad-AwareTrojan.Ransom.Cerber.ER
SophosMal/Generic-R + Mal/Cerber-AA
VIPRETrojan.Win32.Generic!BT
TrendMicroPossible_Cerber-13
McAfee-GW-EditionBehavesLike.Win32.ICLoader.dc
FireEyeGeneric.mg.3e20258dba346aba
EmsisoftTrojan-Ransom.Cerber (A)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1117985
MicrosoftRansom:Win32/Cerber!rfn
ArcabitTrojan.Ransom.Cerber.ER
AegisLabTrojan.Win32.Zerber.j!c
GDataTrojan.Ransom.Cerber.ER
TACHYONRansom/W32.Agent.231624
AhnLab-V3Trojan/Win32.Cerber.C1730368
McAfeeArtemis!3E20258DBA34
MAXmalware (ai score=100)
MalwarebytesRansom.Cerber
PandaTrj/Genetic.gen
TrendMicro-HouseCallPossible_Cerber-13
FortinetW32/Injector.PG!tr
AVGWin32:Trojan-gen
Qihoo-360Win32/Ransom.Cerber.HyoDLWMA

How to remove Trojan.Ransom.Cerber.ER?

Trojan.Ransom.Cerber.ER removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment