Malware

How to remove “Win32.Bertlea.A (B)”?

Malware Removal

The Win32.Bertlea.A (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32.Bertlea.A (B) virus can do?

  • At least one process apparently crashed during execution
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Harvests cookies for information gathering

How to determine Win32.Bertlea.A (B)?


File Info:

name: FD597DA5F50E4EFD158D.mlw
path: /opt/CAPEv2/storage/binaries/8d622777f7893f4de9ec2885e2231ed885a121a56d9c24a66d9bd8478e0557e6
crc32: 9814A56A
md5: fd597da5f50e4efd158dd76c3b169bc6
sha1: 87def9fc4dc2442c933e575d5a75bb58633ddefb
sha256: 8d622777f7893f4de9ec2885e2231ed885a121a56d9c24a66d9bd8478e0557e6
sha512: 8894def8f4d5d4666b8ea57157db3ab82580914b10a183db20318900c89312a697ebd87c8460d40d1a37cb89ea0a6593b2c8c65b2c9425dbd5bd6b9c82baacc9
ssdeep: 384:SQ6rb8e8h1PLSbQ7+6IHxeZOWu2u2eVdFD:Shl8XLn7qxe933eZD
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T173821B664AA594A3D2EE7D73363F4972DB632E55F28800F6A3680249D1ED5A08873C2D
sha3_384: 8ef19b768f1aafd037df44226afae7679571f0ac49645deed23131579f1203ad0106d2c0d2d0d7564e2e9708ed199c07
ep_bytes: 6a00e83d080000a3b0314000bf003040
timestamp: 2003-04-03 20:34:32

Version Info:

0: [No Data]

Win32.Bertlea.A (B) also known as:

Elasticmalicious (high confidence)
DrWebWin32.HLLP.Bert.4608
MicroWorld-eScanWin32.Bertlea.A
FireEyeGeneric.mg.fd597da5f50e4efd
ALYacWin32.Bertlea.A
CylanceUnsafe
ZillyaVirus.Bertle.Win32.1
K7AntiVirusVirus ( 0008d74f1 )
K7GWVirus ( 0008d74f1 )
Cybereasonmalicious.5f50e4
BitDefenderThetaAI:FileInfector.39D7DB360F
CyrenW32/Bertle.NAXZ-5324
SymantecW32.Bertle
ESET-NOD32Win32/Bertle.A
TrendMicro-HouseCallPE_BERTLE.A
ClamAVWin.Worm.Bertel-1
KasperskyVirus.Win32.HLLP.Bertle.4608
BitDefenderWin32.Bertlea.A
NANO-AntivirusVirus.Win32.Bertle.fzbu
AvastWin32:Bertle
TencentTrojan.Win32.BitCoinMiner.la
Ad-AwareWin32.Bertlea.A
SophosW32/Bertle-A
ComodoVirus.Win32.Bertle.AA@4zfm5u
BaiduWin32.Virus.Bertle.a
VIPREBehavesLike.Win32.Malware.vfm (mx-v)
TrendMicroPE_BERTLE.A
McAfee-GW-EditionW32/HLLP.4608
EmsisoftWin32.Bertlea.A (B)
SentinelOneStatic AI – Suspicious PE
GDataWin32.Bertlea.A
eGambitUnsafe.AI_Score_99%
AviraW32/HLLP.Bertl.4608
MAXmalware (ai score=86)
Antiy-AVLTrojan/Generic.ASVirus.17B
MicrosoftWorm:Win32/Bartly.A
CynetMalicious (score: 100)
AhnLab-V3Win32/HLLP.C
Acronissuspicious
McAfeeW32/HLLP.4608
VBA32Virus.Hubert.21207
MalwarebytesMalware.AI.1725748148
APEXMalicious
RisingWorm.Bartly!1.A172 (CLASSIC)
YandexWin32.Bertle.4608
IkarusVirus.Win32
FortinetW32/Bertle.4608
AVGWin32:Bertle
PandaW32/Bertle.4608
CrowdStrikewin/malicious_confidence_70% (D)

How to remove Win32.Bertlea.A (B)?

Win32.Bertlea.A (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment