Malware

How to remove “Babar.23138”?

Malware Removal

The Babar.23138 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Babar.23138 virus can do?

  • Reads data out of its own binary image
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests

Related domains:

z.whorecord.xyz
a.tomx.xyz
tunmi13.dev

How to determine Babar.23138?


File Info:

crc32: BFD11CFA
md5: f7d556b5b1b0a94faa8254365ded04ef
name: F7D556B5B1B0A94FAA8254365DED04EF.mlw
sha1: ed080997de4af23b743c192b485be18c992431b1
sha256: a3e5359555e97f09b5e4cfdd1c6fb30f6abf178046648fd79aa3b046a65b5f62
sha512: fd9c4cf0711b72b2457b8017e28df9a150e3751f8d861f3e8f3266b567e173a0052c23412b51bc017ed2a3758f0e591eb1f8f60ee51a349f3e4ad38a6bd73ce8
ssdeep: 12288:M8FMlGHyYg1b6qz/PBJzogstHlP4bntJDuoooT2SSBOP8a3bbdn78A0hEN7GIihg:3HbsPBVoL4v1T0wP8aLRwA0hjRmhH
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Babar.23138 also known as:

BkavW32.AIDetectVM.malware1
MicroWorld-eScanGen:Variant.Babar.23138
FireEyeGeneric.mg.f7d556b5b1b0a94f
CAT-QuickHealTrojan.Wacatac
McAfeeRDN/Generic.grp
CylanceUnsafe
AegisLabTrojan.Win32.Babar.4!c
BitDefenderGen:Variant.Babar.23138
CrowdStrikewin/malicious_confidence_60% (D)
BitDefenderThetaGen:NN.ZexaF.34634.4uY@aClDOdp
CyrenW32/Trojan.RGIM-5082
SymantecML.Attribute.HighConfidence
APEXMalicious
ClamAVWin.Packed.Emotet-9790742-0
AlibabaPacked:Win32/Generic.fcaab53d
Ad-AwareGen:Variant.Babar.23138
SophosGeneric ML PUA (PUA)
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
EmsisoftApplication.SilentInstaller (A)
JiangminPSWTool.NetPass.dv
MicrosoftTrojan:Win32/EmotetCrypt!ml
GridinsoftTrojan.Win32.Packed.oa
ArcabitTrojan.Babar.D5A62
GDataGen:Variant.Babar.23138
CynetMalicious (score: 100)
ALYacGen:Variant.Babar.23138
MAXmalware (ai score=84)
MalwarebytesTrojan.Crypt
TrendMicro-HouseCallTROJ_GEN.R002H09KH20
RisingTrojan.Generic@ML.86 (RDML:55NI2SDLmaN/ITAUMxIgqA)
YandexTrojan.GenAsa!Y2dAXl3g6is
eGambitUnsafe.AI_Score_99%
FortinetW32/KillProc.A!tr
Cybereasonmalicious.7de4af
Qihoo-360Generic/HEUR/QVM20.1.5857.Malware.Gen

How to remove Babar.23138?

Babar.23138 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment