Malware

Babar.27718 removal instruction

Malware Removal

The Babar.27718 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Babar.27718 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Serbian
  • The binary likely contains encrypted or compressed data.
  • Creates a hidden or system file
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

gc-prtnrs.top
gcc-prtnrs.top

How to determine Babar.27718?


File Info:

crc32: 3B8E39DA
md5: 04d418f79f96f03e882c0a2cad4be1dd
name: 04D418F79F96F03E882C0A2CAD4BE1DD.mlw
sha1: ffed69e865a8bcff66a12a4529dce91edb9829f9
sha256: a7790393710532223b7a1ec48034e0e50a72d5cae2b93bdd6197f78b96184ea8
sha512: 28a106d0607cced19445c480af76cdb7f3143d9459e97f760d786af0ea2d6d178efd948f6475815ce2e02a5d812f16dd39abfe028f33226869ccfe5a6f124e9b
ssdeep: 6144:x4lypJoCP1r+pEsOcWV61F4LKU9wZrNVfs8V:xBP1KpTO1V616CN2
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: kogzmuafoke.exu
ProductVersion: 97.78.38.10
Copyright: Copyrighz (C) 2020, vodkaguts
Translation: 0x0483 0x011e

Babar.27718 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusRiskware ( 0049f6ae1 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:Win32/Kryptik.0e626ef7
K7GWRiskware ( 0049f6ae1 )
CyrenW32/Kryptik.EUJ.gen!Eldorado
SymantecPacked.Generic.525
ESET-NOD32a variant of Win32/Kryptik.HLXT
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
KasperskyUDS:Trojan.Win32.Bsymem.gen
BitDefenderGen:Variant.Babar.27718
MicroWorld-eScanGen:Variant.Babar.27718
Ad-AwareGen:Variant.Babar.27718
SophosML/PE-A
TrendMicroTROJ_GEN.R06CC0WH221
McAfee-GW-EditionBehavesLike.Win32.Upatre.fc
FireEyeGeneric.mg.04d418f79f96f03e
EmsisoftGen:Variant.Babar.27718 (B)
SentinelOneStatic AI – Malicious PE
MicrosoftTrojan:Win32/Azorult.RM!MTB
ArcabitTrojan.Babar.D6C46
GDataGen:Variant.Babar.27718
AhnLab-V3Trojan/Win.Hynamer.R435335
Acronissuspicious
McAfeeTrojan-FTUB!04D418F79F96
MAXmalware (ai score=84)
VBA32BScope.Trojan.Caynamer
MalwarebytesTrojan.MalPack
TrendMicro-HouseCallTROJ_GEN.R06CC0WH221
RisingTrojan.Kryptik!1.D82C (CLASSIC)
IkarusTrojan-Spy.MSIL.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.ERHN!tr
AVGWin32:MalwareX-gen [Trj]
Qihoo-360Win32/Trojan.Generic.HwoCAD8A

How to remove Babar.27718?

Babar.27718 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment