Malware

Babar.27450 removal instruction

Malware Removal

The Babar.27450 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Babar.27450 virus can do?

  • Sample contains Overlay data
  • Unconventionial language used in binary resources: Korean
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Babar.27450?


File Info:

name: F87221541BEDC38D240C.mlw
path: /opt/CAPEv2/storage/binaries/c5a268eac9797387346e6cd1d9c1491a07ea85e10b0884642fa59e3d97a8fc1d
crc32: BA888313
md5: f87221541bedc38d240c65c9bc380feb
sha1: 7ab1605460e4120f491ac3528e70f2e00c8c0a3a
sha256: c5a268eac9797387346e6cd1d9c1491a07ea85e10b0884642fa59e3d97a8fc1d
sha512: d03c3bb30d164cb987b4b523f370f9653a994caab7d6c4847fa56c887f88391bbaec91d4d6c6769233f475c0aabd770dcdae8970eee61e7603e864385f7d748c
ssdeep: 3072:2Hxp1kzdcEOnmksIOaqtrkYsUgguxOe0/tTkHZCOhRJzU+PGI:apgdcEAm7IOaQsUggsOHVYHZCOhDV
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10DE38E036F428072E7BB04F16A7F5B2A46BDEE71239454D763816E9D1E712E2ED3210B
sha3_384: 445cfd063505f6e37614d7f8a7c1605148ced809d3a80beefd1f3518cd5d75291974f1833a2a4d4f8fcf072771f249f8
ep_bytes: e87a040000e99ffdffff8bff558bec81
timestamp: 2021-07-06 01:59:24

Version Info:

0: [No Data]

Babar.27450 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Invader.4!c
MicroWorld-eScanGen:Variant.Babar.27450
FireEyeGeneric.mg.f87221541bedc38d
SkyhighGenericRXOK-DB!7E9180313F7E
ALYacGen:Variant.Babar.27450
MalwarebytesGeneric.Malware.AI.DDS
VIPREGen:Variant.Babar.27450
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0056e5201 )
BitDefenderGen:Variant.Babar.27450
K7GWTrojan ( 0056e5201 )
CrowdStrikewin/malicious_confidence_100% (W)
SymantecTrojan.Gen.MBT
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Agent.ADIC
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Bulz-9854499-0
KasperskyHEUR:Trojan.Win32.Agent.gen
AlibabaTrojanSpy:Win32/Latot.19de9589
NANO-AntivirusTrojan.Win32.Urelas.ixpccl
TencentMalware.Win32.Gencirc.10bd6113
SophosMal/Generic-S
F-SecureTrojan.TR/Spy.Gen
DrWebTrojan.Siggen14.5699
ZillyaTrojan.Agent.Win32.2294650
TrendMicroTROJ_GEN.R002C0WHM23
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Babar.27450 (B)
IkarusTrojan.Win32.Agent
GDataGen:Variant.Babar.27450
JiangminTrojan.Invader.dsr
VaristW32/Kryptik.DSI.gen!Eldorado
AviraTR/Urelas.gnhpc
Antiy-AVLTrojan/Win32.Invader
KingsoftWin32.Trojan.Agent.gen
ArcabitTrojan.Babar.D6B3A
ZoneAlarmHEUR:Trojan-Spy.Win32.Screenshoter.gen
MicrosoftHackTool:Win32/AutoKMS!ml
GoogleDetected
AhnLab-V3Trojan/Win.FPYE.R429545
McAfeeGenericRXAA-AA!F87221541BED
MAXmalware (ai score=88)
DeepInstinctMALICIOUS
VBA32BScope.Trojan.Invader
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0WHM23
RisingTrojan.Agent!1.C8CF (CLASSIC)
YandexTrojanSpy.Agent!FKmL/3kc2DI
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.122243874.susgen
FortinetW32/Small.YQNY!tr
AVGWin32:Trojan-gen
Cybereasonmalicious.460e41
AvastWin32:Trojan-gen

How to remove Babar.27450?

Babar.27450 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment