Malware

Babar.292881 removal tips

Malware Removal

The Babar.292881 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Babar.292881 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Babar.292881?


File Info:

name: 86B112F985CB8A5CB537.mlw
path: /opt/CAPEv2/storage/binaries/08221e3d98e5bbd322f0b06817713d6afc0361321d3b49bb517065bc6a11b75a
crc32: BC85EF86
md5: 86b112f985cb8a5cb53753f433ce4bd3
sha1: cb0dd3b7d275fb20a5c037488f544c60ba6191c0
sha256: 08221e3d98e5bbd322f0b06817713d6afc0361321d3b49bb517065bc6a11b75a
sha512: 6a51780491c669e09ddd09b5f346c56a81f271faf7a5a0f91031e95cfe26469bd7009bcd5b5080c4a20c90fec2d2551e7252e48106dc17305b58e06f44b0e89c
ssdeep: 24576:EJid+1g/84pBBOG7D7kNf6CJRkRa1GlhRU+wAbQkB:Eo+1gZOODsfuT1UIX
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T181759E13F9D280F5D70D2930196BB736AA359A430F21CFC3D354EE6D1E725A1993B22A
sha3_384: 32e4340768090cbc11d19c0516b789409b30807979cd01158796ae0736b7776a069bb860093fa5391e8973fa1fd31148
ep_bytes: 890d00000000c9c3568bf1837e100075
timestamp: 2013-03-01 18:00:22

Version Info:

0: [No Data]

Babar.292881 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Multi.Generic.lmpu
Elasticmalicious (moderate confidence)
DrWebTool.Siggen.9393
MicroWorld-eScanGen:Variant.Babar.292881
FireEyeGeneric.mg.86b112f985cb8a5c
CAT-QuickHealTrojan.Generic.8507
SkyhighBehavesLike.Win32.Generic.tm
ALYacGen:Variant.Application.Symmi.17266
MalwarebytesGeneric.Malware.AI.DDS
SangforSuspicious.Win32.Save.ins
Cybereasonmalicious.7d275f
ArcabitTrojan.Babar.D47811 [many]
BitDefenderThetaGen:NN.ZedlaF.36792.Su8@auDNmSob
SymantecML.Attribute.HighConfidence
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Onlinegames-6629257-0
BitDefenderGen:Variant.Babar.292881
AvastWin32:Malware-gen
EmsisoftGen:Variant.Babar.292881 (B)
BaiduWin32.Trojan.FakeIME.d
VIPREGen:Variant.Babar.292881
Trapminemalicious.moderate.ml.score
SophosGeneric ML PUA (PUA)
IkarusTrojan-PSW.OnlineGames4
JiangminHeur:Backdoor/Blackhole
VaristW32/VBInject.L.gen!Eldorado
Antiy-AVLTrojan/Win32.FlyStudio.a
Kingsoftmalware.kb.b.884
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataWin32.Trojan.PSE.XQU6XR
GoogleDetected
McAfeeArtemis!86B112F985CB
MAXmalware (ai score=76)
Cylanceunsafe
SentinelOneStatic AI – Malicious PE
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Babar.292881?

Babar.292881 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment