Malware

Babar.83882 malicious file

Malware Removal

The Babar.83882 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Babar.83882 virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Babar.83882?


File Info:

name: AA86DF615998182F25A4.mlw
path: /opt/CAPEv2/storage/binaries/f74068b329290bd1412ffa3286601fef07dc78901197e5c901e81e70e0aeb50d
crc32: FD1CDF62
md5: aa86df615998182f25a45f8cf7b17ab2
sha1: d89952c0c6964de2fc60657534452591ecdf4d08
sha256: f74068b329290bd1412ffa3286601fef07dc78901197e5c901e81e70e0aeb50d
sha512: 4180ae281d8915c0271e80b85b1627cfd260f5c6fd95cd7a48f95e25c05bfc8165637cdad8fb8ae6653e42e080d21352f5b9fd533c6a21f3537268de3251b546
ssdeep: 12288:ge0SbVugmijPUrRUBqh1H5svFLoEcOZp7xdXB1azcnyz9vSxb+pXu76tu76BVqvp:0QVKijPsekOZJxdBM30p
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10A755AB233E5CCBAD2A22132CC65E2ED5662BF910F2096C72D913A1D5A741C35EF9F41
sha3_384: 21889361922f583dc1a6af0eaabfc04d603d9e6c2b6139f9acd196d833bb335d385b2a7c093e2254573207b93ccfed56
ep_bytes: e8db9f0000e917feffff8b442404a39c
timestamp: 2008-09-27 02:02:58

Version Info:

Comments:
CompanyName: Atheros Communications, Inc.
FileDescription: Jumpstart for Wireless
FileVersion: 2.1.0.18
InternalName: JSAPP
LegalCopyright: Copyright © 2004 - 2007, Atheros Communications, Inc. All Rights Reserved.
LegalTrademarks:
OriginalFilename: JSWSCAPP.EXE
PrivateBuild:
ProductName: JumpStart
ProductVersion: 2.1.0.18
SpecialBuild:
Translation: 0x0409 0x04b0

Babar.83882 also known as:

BkavW32.AIDetectMalware
DrWebTrojan.DownLoader33.4491
MicroWorld-eScanGen:Variant.Babar.83882
FireEyeGen:Variant.Babar.83882
SkyhighArtemis!Trojan
McAfeeArtemis!AA86DF615998
VIPREGen:Variant.Babar.83882
K7AntiVirusRiskware ( 00584baa1 )
BitDefenderGen:Variant.Babar.83882
K7GWRiskware ( 00584baa1 )
KasperskyUDS:Trojan.Win32.Generic
AlibabaTrojan:Win32/Meterpreter.33905930
NANO-AntivirusTrojan.Win32.Mlw.hbjhil
EmsisoftGen:Variant.Babar.83882 (B)
MAXmalware (ai score=81)
JiangminTrojan.Generic.eltev
MicrosoftTrojan:Win32/Meterpreter.A
ArcabitTrojan.Babar.D147AA
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Babar.83882
ALYacGen:Variant.Babar.83882
VBA32Trojan.Downloader

How to remove Babar.83882?

Babar.83882 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment