Malware

Babar.244245 removal instruction

Malware Removal

The Babar.244245 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Babar.244245 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Babar.244245?


File Info:

name: B9CFD7A5A153695C4911.mlw
path: /opt/CAPEv2/storage/binaries/367b9e9e8269cd7bcc7ce13e66625be3bff74204ce781ff2e3c7923ae62ee5b3
crc32: A7C28E4F
md5: b9cfd7a5a153695c4911893c976bc54b
sha1: 8ab76460166896bc8f068b9e47e2fb8a57056980
sha256: 367b9e9e8269cd7bcc7ce13e66625be3bff74204ce781ff2e3c7923ae62ee5b3
sha512: 9588990ad214795fb954852dd71da79d5339f9384f9db27c34ab822acbe76e2b38f04ae2abf16008624b3edf003824f3076397af8dfb7163ab4999258ef221ae
ssdeep: 12288:XB2cr75BpeU/tWR8RNyO4YayNiPomQfzGMgfcSbRiTiK/jFdp2zgQ:XB7RrL/YRsNyObayNiJQbBqbufSzj
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T110257CC1E5A344B4CD072C7509A6FB379A799D1B3E61CEC763DCDC2B79232616832226
sha3_384: 129a9b57b24b2651d2131d250e5d76e4cc59c3b7cb8948e9b5e41854045f860912f252c78f58d4ac6bc590d47335fa00
ep_bytes: 558bec6aff68a09c4d0068545c450064
timestamp: 2011-05-15 07:07:18

Version Info:

FileVersion: 1.0.0.0
FileDescription: 集合输入秘籍、属性修改的超级修改器
ProductName: 罪恶都市属性修改器3.0
ProductVersion: 1.0.0.0
CompanyName: 星宇落弦
LegalCopyright: 注:本作品纯属娱乐,并无木马及后门程序!
Comments: By:星宇落弦
Translation: 0x0804 0x04b0

Babar.244245 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Babar.244245
FireEyeGeneric.mg.b9cfd7a5a153695c
SkyhighBehavesLike.Win32.Generic.fh
McAfeeGenericRXAA-AA!B9CFD7A5A153
MalwarebytesHack.Trojan.Userhack.DDS
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 005246d51 )
K7GWTrojan ( 005246d51 )
CrowdStrikewin/malicious_confidence_60% (D)
ArcabitTrojan.Babar.D3BA15
VirITTrojan.Win32.OLG.BNZB
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
CynetMalicious (score: 100)
APEXMalicious
BitDefenderGen:Variant.Babar.244245
NANO-AntivirusTrojan.Win32.FlyStudio.dharrt
AvastWin32:Evo-gen [Trj]
SophosGeneric ML PUA (PUA)
F-SecureTrojan:W32/DelfInject.R
VIPREGen:Variant.Babar.244245
EmsisoftGen:Variant.Babar.244245 (B)
SentinelOneStatic AI – Malicious PE
VaristW32/S-47c1ea66!Eldorado
MAXmalware (ai score=87)
Antiy-AVLTrojan/Win32.FlyStudio.a
XcitiumWorm.Win32.Dropper.RA@1qraug
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
GDataWin32.Trojan.PSE.10S0A6W
GoogleDetected
ALYacGen:Variant.Babar.244245
Cylanceunsafe
PandaGeneric Malware
RisingTrojan.Generic@AI.99 (RDML:QXsyQf4VJ2TcKcmONfVjkA)
YandexTrojan.GenAsa!ddEjWXqhPcQ
FortinetRiskware/PackedFlyStudio
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.016689
DeepInstinctMALICIOUS

How to remove Babar.244245?

Babar.244245 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment