Trojan

Trojan:Win32/Cerber!pz malicious file

Malware Removal

The Trojan:Win32/Cerber!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Cerber!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan:Win32/Cerber!pz?


File Info:

name: 3A01A6F915FD5E96872F.mlw
path: /opt/CAPEv2/storage/binaries/5375acdb754e2168d4e3e2a6c8717715276962709dc4f6f279c7c04ab5c20472
crc32: 36507E5D
md5: 3a01a6f915fd5e96872f984701be2221
sha1: 4aa21500986a2d370c25f04f12e0428bbe607749
sha256: 5375acdb754e2168d4e3e2a6c8717715276962709dc4f6f279c7c04ab5c20472
sha512: c31c23e38789cc6444ba2f95859ab61c659410de6625129f2ac257ff309b95471aa597e9dc0fd431510c84c48e22d7a13d3c83a5f27c6ca67d05a3f47bdd588f
ssdeep: 768:sfW56ZKAHui4xHb23k+Zm4Ng6+81L+c0yKV4Uq9X23QrFF2p/1H5zXdnhfepXdnh:sfPZ7Kb23kSmWgI1aF/u7Dv2LXwL
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T110246CCE48BE8ED3CC8E163ACDB2A564E24160FD4DD21F39B396C341196B786B1F5650
sha3_384: eedd3e5dd16ba3f3940e8bd31e8a91cbda7b6f3ed8367eccc806536b76c3c81a1843683eb8ae9c2288939812b74fa7c0
ep_bytes: 00000000000000000000000000000000
timestamp: 1984-04-18 04:22:33

Version Info:

0: [No Data]

Trojan:Win32/Cerber!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Convagent.m!c
FireEyeGeneric.mg.3a01a6f915fd5e96
SkyhighBehavesLike.Win32.Generic.dz
McAfeeGenericRXAA-FA!3A01A6F915FD
Cylanceunsafe
ZillyaBackdoor.Convagent.Win32.26997
SangforSuspicious.Win32.Save.a
AlibabaBackdoor:Win32/Convagent.2e4a867b
Cybereasonmalicious.0986a2
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Generickdz-10013340-0
KasperskyHEUR:Backdoor.Win32.Convagent.gen
AvastWin32:Evo-gen [Trj]
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
SophosMal/Generic-S
BaiduWin32.Trojan-Spy.Quart.a
DrWebTrojan.Siggen13.57251
Trapminemalicious.high.ml.score
SentinelOneStatic AI – Malicious PE
VaristW32/Heuristic-CO3!Eldorado
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/Cerber!pz
ZoneAlarmHEUR:Backdoor.Win32.Convagent.gen
GDataWin32.Trojan.Agent.E2LO69
GoogleDetected
AhnLab-V3Trojan/Win.Cerber.C5536033
Acronissuspicious
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R03BH0CKS23
IkarusTrojan.Win32.Cerber
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/CoinMiner.3E08!tr
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:Win32/Cerber!pz?

Trojan:Win32/Cerber!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment