Ransom Trojan

Trojan.Ransom.CerberKD.12466929 removal instruction

Malware Removal

The Trojan.Ransom.CerberKD.12466929 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Ransom.CerberKD.12466929 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Attempts to stop active services
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Operates on local firewall’s policies and settings
  • Creates a copy of itself
  • Attempts to disable UAC
  • Attempts to disable Windows Defender
  • Attempts to modify or disable Security Center warnings

How to determine Trojan.Ransom.CerberKD.12466929?


File Info:

crc32: EB5DA1D7
md5: be22d86ae3e9d82b0911761988400158
name: BE22D86AE3E9D82B0911761988400158.mlw
sha1: 28a29358a43ef6a27c94e982146ee4e29fdbce06
sha256: d88de755e5a8a5f72fe2a9ed23efb77c35678527d741c0e9a84c46dc5b7018b0
sha512: 618eab148422dd358142472a993fac1f90deb64298490290e965dd8b83525a1354a6fae8e3e44dfd280b26826355d801749d9f9c75dfac63ff487a691437f197
ssdeep: 3072:T6YyophWXtXbuYlHBza7QemLN6K1gu2xC:7v+5hz4v0I
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Trojan.Ransom.CerberKD.12466929 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0051918c1 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader25.44056
CynetMalicious (score: 100)
ALYacTrojan.Ransom.Cerber
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Lebag.9345e21c
K7GWTrojan ( 0051918c1 )
Cybereasonmalicious.ae3e9d
SymantecPacked.Generic.493
ESET-NOD32a variant of Win32/Kryptik.HMOU
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Trojan.Emotet-6397225-0
KasperskyTrojan.Win32.Lebag.afkx
BitDefenderTrojan.Ransom.CerberKD.12466929
NANO-AntivirusTrojan.Win32.Lebag.ettqdi
MicroWorld-eScanTrojan.Ransom.CerberKD.12466929
TencentWin32.Trojan.Lebag.Pgmk
Ad-AwareTrojan.Ransom.CerberKD.12466929
SophosML/PE-A + Mal/Elenoocka-G
ComodoBackdoor.Win32.Poison.GBY@7h7izl
BitDefenderThetaGen:NN.ZexaF.34170.jqW@a0X2SMd
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_CERBER.SMALY0
McAfee-GW-EditionBehavesLike.Win32.Ransomware.cc
FireEyeGeneric.mg.be22d86ae3e9d82b
EmsisoftTrojan.Ransom.CerberKD.12466929 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Lebag.fe
AviraHEUR/AGEN.1120889
eGambitUnsafe.AI_Score_93%
Antiy-AVLTrojan/Generic.ASMalwS.224208A
MicrosoftVirTool:Win32/Obfuscator.ARL
ArcabitTrojan.Ransom.CerberKD.DBE3AF1
SUPERAntiSpywareRansom.Cerber/Variant
GDataTrojan.Ransom.CerberKD.12466929
AhnLab-V3Trojan/Win32.Lukitus.R209914
Acronissuspicious
McAfeeRansomware-GHE!BE22D86AE3E9
MAXmalware (ai score=99)
VBA32Trojan.Lebag
MalwarebytesRansom.Locky
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom_CERBER.SMALY0
RisingTrojan.Kryptik!1.AE11 (CLASSIC)
YandexTrojan.GenAsa!bZ6QvQUapVg
IkarusTrojan-Ransom.Locky
FortinetW32/Kryptik.GKKB!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Ransom.CerberKD.12466929?

Trojan.Ransom.CerberKD.12466929 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment