Cerber 4.0 Ransomware Files

File Name Size Detection Count MD5
# DECRYPT MY FILES #.vbs 210 143 e885e348f83d97db3deb82ed43a64eeb
%APPDATA%\README.hta 63,083 141 a8ea44a2c0cfa90e3b57995646f5c56b
%APPDATA%\README.hta 63,111 132 1808e758f4fee72c1af44de11fc3f678
%APPDATA%\README.hta 63,059 125 0ce52374c48f0e7ad2edd8a88c584824
%APPDATA%\README.hta 63,059 116 314e4eca7b83be76b02b3cae7405ce80
%APPDATA%\_README_.hta 67,727 115 78ca80bb84b62f81f28977de96dd27a2
%APPDATA%\README.hta 63,059 110 df35fc646ed513eb551c318dc2d87178
%APPDATA%\README.hta 63,059 110 af4bd7fc3346b6ba3bd6e7a2dbbf5044
%APPDATA%\README.hta 63,059 104 5e7874f0457425862dab9a32a9bf2a11
%WINDIR%\system32\config\systemprofile\AppData\Roaming\{CF8F26B1-3EC0-720A-C9F8-1789B71C1603}\msconfig.exe 278,168 100 31ac8ad37841e61ca99ea1f6121509e1
%APPDATA%\_README_.hta 67,727 100 d43197eb6cfe51177badd13bd0cc4393
%APPDATA%\{C7CA4F2D-01E5-D6DC-E8C2-3EBF92B3C026}\eventcreate.exe 199,991 95 73ed96f56b9fd3573d636ecf63c3083e
%APPDATA%\README.hta 63,113 94 9cfaa858466fca9168dc98379df0c166
%USERPROFILE%\Start Menu\Programs\Startup\README.hta 63,059 91 5c780ff95bed38c85de0525c23f6ce8f
%SystemDrive%\Users\Damien\AppData\Roaming\{DC2171AC-3C6C-8D97-0D0A-0B44B46853E1}\poqexec.exe 311,466 89 ddf63cffe0664898ddac95412451c428
%APPDATA%\README.hta 63,083 86 11df5356b56b368bc0ef5ca64b3f0f53
%APPDATA%\Pwgen.dll 15,872 85 ad861ff893f7d44229915828ee47bd8c
%APPDATA%\README.hta 63,059 85 74cf3881fbe945e8fbaee6b0df17c62d
%APPDATA%\README.hta 63,191 82 68bc2742460d8bdc806a9c9b4e9d856a
%SystemDrive%\Users\wipro\AppData\Roaming\README.hta 63,111 82 6b603d0140c30bd65575bd49daf841fe
%APPDATA%\README.hta 67,712 81 95405c75e3688e6e70776d8a5882fe94
%SystemDrive%\Users\Omar\AppData\Roaming\{BAA259B2-AFD9-C5F2-731C-F4D892C9E93B}\expand.exe 263,984 81 fb0a70d935e1578eed519d15bc312947
%APPDATA%\{12490CDC-5E3A-89F1-1C00-133B594068BC}\wuapp.exe 249,088 80 061354f1c8f9f203038d1cb0693afa7d
%WINDIR%\system32\config\systemprofile\AppData\Roaming\{6F885251-E36F-0FE6-9629-63208157D7A2}\mtstocom.exe 307,448 80 868dfbe98931ed3a43645a3a48683a4b
%USERPROFILE%\README.hta 4,336 79 ae3cf1c54eeb5ef75e73a542cca88661
%APPDATA%\_README_.hta 67,711 79 1d1cb13e4572992e72318b268aceac4f
%APPDATA%\README.hta 67,712 75 12f051479b26b2abf0ac70759e0be743
%APPDATA%\README.hta 63,083 73 463e6355db84405b8f0a4083b7c4e402
%APPDATA%\{3EE6CB8A-7B45-10A7-9D36-9007190F1584}\iscsicli.exe 182,016 73 20fd78679025b9412bf5365b9282fcd7
%APPDATA%\README.hta 63,111 70 2d75b12d5823c06daaa630eed758292a
%ALLUSERSPROFILE%\# DECRYPT MY FILES #.vbs 222 67 4f954192a70d5ec31e2bcffd0981a932
%APPDATA%\README.hta 63,111 66 503b0d040a5f92f447c99f9c855368a5
%APPDATA%\README.hta 63,083 65 1ba3c18b62437880ac7a8f29ab526d7e
%APPDATA%\README.hta 63,059 65 2c89e29ab1b5ea9386b91add891c09f1
%ALLUSERSPROFILE%\README.hta 67,712 65 0bc45a489133f7d283853cfae57dae3e
%APPDATA%\README.hta 63,111 64 0970000c2142ded2e3ce17c29990b61e
%APPDATA%\README.hta 63,111 63 a33381f6c7a4e1efb406b55a57a9978f
%APPDATA%\README.hta 63,083 62 715d802e6e249ce0b15cfeb178ceb6ab
%APPDATA%\README.hta 63,059 62 a3a366084e4eae6901f6556318e32f60
%APPDATA%\README.hta 63,111 62 6b3831e0b71e2726636fbac0ee750df2
%ALLUSERSPROFILE%\_README_HRZVCO6_.hta 67,748 61 16b5a4fe87e1a3eec470a47a33c6630e
%APPDATA%\# DECRYPT MY FILES #.vbs 249 60 6c984bab1b00c4a7acf50b399163f713
%APPDATA%\_README_2MGBM_.hta 67,748 59 fdc9766aadba12825ada9393a57078d6
%APPDATA%\README.hta 63,059 54 9802aa3416c18116e524feb0094b6f95
%ALLUSERSPROFILE%\Readme.hta 9,077 54 8f85ab4bb455ce6d413eff9e9d47a506
%APPDATA%\README.hta 63,111 53 0f29e991e655777cf8505990249d7ea8
%APPDATA%\README.hta 63,111 53 2cf7e234859be7e9ebc5a55c890d1097
%APPDATA%\README.hta 63,083 52 53f0164ddf1522791bbe63b381859368
%APPDATA%\README.hta 63,111 52 d3e1a37fe00fe69c76ac206ca601f3ea
%APPDATA%\README.hta 63,059 52 1c44ad42b22ae17df75f92db177b33c4
%APPDATA%\README.hta 63,111 51 9ffba854f56da1addf3964624c3afb57
%APPDATA%\README.hta 67,712 50 df13ca8efb458efd13d1ac357c954d30
%APPDATA%\README.hta 63,111 49 2f3830cb8450cfd6117927d91ebe0647
%APPDATA%\README.hta 63,083 47 ded01f62a0c734b0f6d4255902f19fba
%APPDATA%\README.hta 63,059 47 4fbd2e97ee30f908fe86894bf63000d8
%APPDATA%\README.hta 63,086 46 041060c36551167494a0e0288ea6cf8f
%USERPROFILE%\AppData\Roaming\{AD159BAE-8847-F6D8-E371-D10A3FA32C34}\SyncVersion.exe 308,736 45 ea9b79596e0838e5778074f0210bd82c
%APPDATA%\README.hta 67,712 45 9db955ad0f69498a5e199b457bdef864
%WINDIR%\system32\config\systemprofile\AppData\Roaming\{E8D7DE07-786F-0D03-62B9-38054771F4C9}\PnPutil.exe 458,891 44 51a837cb8c66e07fd844de0d4f8a1a8e
%ALLUSERSPROFILE%\Microsoft\Windows\Start Menu\Programs\Startup\README.hta 4,108 44 91cfda328e7766c5a03033ebe602d0f0
%APPDATA%\README.hta 63,111 44 0d072a9f55d22af59a68c727971e894f
%APPDATA%\README.hta 63,059 43 8fdc2bc50d2906294cf491b3428c0d6d
%APPDATA%\README.hta 63,113 43 777e13c9a5cad4e1d2134d5104188ff6
%APPDATA%\Pwgen.dll 19,968 43 643bc230b133f7ff004b7d5d14b78296
%APPDATA%\{2FD8FDFB-255E-1B43-FAF5-C4269DB3CF33}\wecutil.exe 378,505 42 c47e0c16c6bfc7602ce4ee6834705870
%APPDATA%\README.hta 63,059 42 31acbc00bc433060a12da0e9379a4fe6
%APPDATA%\README.hta 63,059 40 d2f7d0abe5a3675af1969221bedc8399
%APPDATA%\README.hta 63,059 39 312c895c47cff34923b22efda4af2e0e
%APPDATA%\README.hta 63,083 39 7df91e8c1448fa257669ff90e48b17d1
%APPDATA%\README.hta 63,059 39 eadc6cb8468ca04e530a159e35783277
%APPDATA%\README.hta 63,059 38 09e9492754de109b3c791fb6b792d478
%APPDATA%\README.hta 63,059 38 5156199266be42dc0317e35372bee16c
%APPDATA%\README.hta 63,111 38 fa19ab19f894fa2944fb6cbdc759e872
%APPDATA%\README.hta 63,111 38 6771c2f2a5fddb0238c79993b76b4204
%APPDATA%\README.hta 63,059 37 f7e2754c2209f892954f6245ceb29075
%APPDATA%\README.hta 63,059 36 194b6a2e588f88bf4b2fd4aad6d88cfb
%APPDATA%\README.hta 61,802 36 c4fff6005b70cccd895082e6c79595b3
%ALLUSERSPROFILE%\Microsoft\Windows\Start Menu\Programs\Startup\README.hta 4,336 35 e832f14ee853c97bd8173e26727c4528
%SystemDrive%\Users\Administrator\README.hta 4,336 35 a0ebdc85ee1f3525f8af09a281fc4e7e
%APPDATA%\README.hta 63,059 34 aee3f0cb4ab0a7a264eccc82d24ce90e
%ALLUSERSPROFILE%\README.hta 67,712 34 593b2cd3ffbb7ca323b251130dd0ace0
%APPDATA%\README.hta 63,059 34 bba8ba5bbc5f81a2893c812a20271ec7
%APPDATA%\README.hta 63,111 33 1a6e325a7f10b278139871b4356a9604

Home > Threat Database > Cerber 4.0 Ransomware > Cerber 4.0 Ransomware Files
Need Help? Call SpyHunter Customer Service!
Worldwide: +353 1 907 9880
USA (Toll Free): +1 (888) 360-0646