Malware

How to remove “Babar.18677”?

Malware Removal

The Babar.18677 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Babar.18677 virus can do?

  • Presents an Authenticode digital signature
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.

Related domains:

z.whorecord.xyz
a.tomx.xyz
2398.35go.net
infoc0.duba.net
dubacdn.cmcmcdn.com
www.baidu.com
config.i.duba.net

How to determine Babar.18677?


File Info:

crc32: 15B43C46
md5: 379b92a27935277296a014642fc5c5cb
name: ps6______.exe
sha1: 49f55d0dead4e582d3d524d6e04af67fb897002f
sha256: b66f4ea54f34ab83eafe635453604dbad82bc761ac569ad784f6b3b608325a29
sha512: b4e6e3f977bd86337cb1330a014c0309cae6baa703a1278f9de0224af22069a632b26ed7b7d399f9ca34a87dc17433e6dd10ea5b77b796ba17817aaea6a45b79
ssdeep: 24576:V+Vyz8uf3554t04AzzEhXCeOfBRxwZSH/hKCoSC7ZFwDjNT0eQiUMB/T5:V+VyzXf3554t04AzzE1CdfhKCoDXEdye
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Babar.18677 also known as:

MicroWorld-eScanGen:Variant.Babar.18677
CylanceUnsafe
BitDefenderGen:Variant.Babar.18677
ESET-NOD32a variant of Win32/KingSoft.B potentially unwanted
GDataGen:Variant.Babar.18677
Endgamemalicious (high confidence)
EmsisoftGen:Variant.Babar.18677 (B)
CyrenW32/Trojan.TBMW-2151
JiangminDownloader.Agent.myp
MAXmalware (ai score=84)
AhnLab-V3PUP/Win32.Installer.C4008344
VBA32BScope.Adware.Presenoker
FortinetRiskware/KingSoft
WebrootW32.Adware.Gen
AVGFileRepMalware [PUP]

How to remove Babar.18677?

Babar.18677 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment