Malware

Babar.221691 information

Malware Removal

The Babar.221691 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Babar.221691 virus can do?

  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Babar.221691?


File Info:

name: 772F678431152D1AB358.mlw
path: /opt/CAPEv2/storage/binaries/92dccc9af96e493552c42ef3e89c539e6fb90da826bd78c123480f5b17107f1b
crc32: C7B30B58
md5: 772f678431152d1ab3581c228bffe27b
sha1: 6135600228e342d70066cbb994d23e865ba64c1d
sha256: 92dccc9af96e493552c42ef3e89c539e6fb90da826bd78c123480f5b17107f1b
sha512: f7d53d4c317d371629d6facfd4c5e705b87598f6ed6a0ad3cee8267d94ad3b5af42f6799438423dfb07fbc11f228edc9b527f37c8806b3230321d6aad5cab0eb
ssdeep: 12288:FoDF0bFZFaTnqn0CpQP13yLXrmvmkX2JDrNbRADCzh70pDMHlsbfNaelOoSB:pbFnn0JaehX2JPNbRADCz6p4HlKfNg
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T14DE4338C799CCC8DC84B9B3DACDA8BB3D9B5096D56822F13BC7065E244C9FCEDA41194
sha3_384: f9f61b13c7a5aec8b749b74e98d9febbdf67c8f0e87946c67b58a78f14e1f0ba4038643815f57d4ec3706d79c6ad279f
ep_bytes: 807c2408010f85c30b000060be00a05e
timestamp: 2023-01-24 17:30:33

Version Info:

FileDescription: astralupd
FileVersion: 1.0.0.0
ProgramID: com.embarcadero.astralupd
ProductName: astralupd
ProductVersion: 1.0.0.0
Translation: 0x0409 0x04e4

Babar.221691 also known as:

BkavW32.Common.F9C2505C
LionicTrojan.Win32.GenCBL.4!c
MicroWorld-eScanGen:Variant.Babar.221691
FireEyeGen:Variant.Babar.221691
SkyhighArtemis!Trojan
McAfeeArtemis!772F67843115
Cylanceunsafe
ZillyaTrojan.GenCBL.Win32.12437
SangforTrojan.Win32.Gencbl.V86c
AlibabaTrojan:Win32/GenCBL.a444aaf9
K7GWTrojan ( 005956a51 )
K7AntiVirusTrojan ( 005956a51 )
ArcabitTrojan.Babar.D361FB
VirITWin32.Sality.AA
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenCBL.BYE
BitDefenderGen:Variant.Babar.221691
AvastWin32:MalwareX-gen [Trj]
EmsisoftGen:Variant.Babar.221691 (B)
VIPREGen:Variant.Babar.221691
SophosMal/Generic-S
GoogleDetected
MicrosoftTrojan:Win32/Wacatac.H!ml
GDataGen:Variant.Babar.221691
VaristW32/ABRisk.ESLF-2738
ALYacGen:Variant.Babar.221691
MAXmalware (ai score=86)
MalwarebytesGenCBL.Ransom.FileCryptor.DDS
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R002H0CL223
RisingTrojan.GenCBL!8.12138 (CLOUD)
IkarusTrojan.Win32.Generic
MaxSecureTrojan.Malware.202964070.susgen
FortinetW32/GenCBL.BYE!tr
AVGWin32:MalwareX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Babar.221691?

Babar.221691 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment