Malware

What is “Babar.72108”?

Malware Removal

The Babar.72108 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Babar.72108 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Babar.72108?


File Info:

name: 4523CEB8E7D703D1E8A8.mlw
path: /opt/CAPEv2/storage/binaries/a07fbc888f48f281ed1e2692448d63b0c24b5710070304e081e078aa136a6967
crc32: 9DE62CE0
md5: 4523ceb8e7d703d1e8a82d0bb4a11a7d
sha1: b30bac0f987ba8d2b93dceff029e919316923afd
sha256: a07fbc888f48f281ed1e2692448d63b0c24b5710070304e081e078aa136a6967
sha512: 2000fa31bf675b66321f456954e0aa588e6bffd7c5742a365d9bd2e6296d2184597a0fa760af41b9b9c833ad44ee111992c170c23e0b3c5d61ba30debbdef91a
ssdeep: 12288:q+GAo7YcBYDKzcx9jkmP8bey7/0RDMmZZxnyUuyyu9AEtxY6Qnnnu/9:qvTYDKzcx9jkmPe/knxypwG6n9
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T14E259E2138C78576EDE320B746ECB63543ADE7B4071705EF16C85BEED6606C27A32682
sha3_384: d0b889d2a89d20150db794f615d9c8fd10289724509364fb25d9b6535cc8c094ae217012b83aaf7a7ea82c8dcb6f417c
ep_bytes: e96cd30300e9d63f0500e97b560400e9
timestamp: 2023-09-29 04:35:15

Version Info:

0: [No Data]

Babar.72108 also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanGen:Variant.Babar.72108
ALYacGen:Variant.Babar.72108
MalwarebytesSpyware.RedLineStealer
VIPREGen:Variant.Babar.72108
SangforTrojan.Win32.Save.a
CyrenW32/Kryptik.KRU.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.HUUC
APEXMalicious
KasperskyHEUR:Trojan-PSW.Win32.Stealerc.gen
BitDefenderGen:Variant.Babar.72108
AvastWin32:TrojanX-gen [Trj]
EmsisoftGen:Variant.Babar.72108 (B)
DrWebTrojan.Inject4.61458
FireEyeGen:Variant.Babar.72108
GDataGen:Variant.Babar.72108
GoogleDetected
MAXmalware (ai score=87)
Antiy-AVLTrojan/Win32.Sabsik
ArcabitTrojan.Babar.D119AC
ZoneAlarmHEUR:Trojan-PSW.Win32.Stealerc.gen
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.R608400
RisingTrojan.Generic@AI.90 (RDML:euGQJf355+v0hT4iyalw4g)
FortinetW32/Injector.ETFD!tr
BitDefenderThetaGen:NN.ZexaE.36738.@yW@aClE7Vp
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Babar.72108?

Babar.72108 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment