Malware

Babar.97334 information

Malware Removal

The Babar.97334 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Babar.97334 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Georgian
  • Authenticode signature is invalid
  • CAPE detected the RedLine malware family

How to determine Babar.97334?


File Info:

name: A3C0EF0F0FEC4E2D9DBB.mlw
path: /opt/CAPEv2/storage/binaries/6ebbd9ffe1dcc5b7cc957eca88b82218f43d16604ce4df0baebd5ec37ea2858f
crc32: 92525CE4
md5: a3c0ef0f0fec4e2d9dbb1f3b4ecd5553
sha1: 1d528acd2a9b33c3d927f4ebf2409bc04a51124d
sha256: 6ebbd9ffe1dcc5b7cc957eca88b82218f43d16604ce4df0baebd5ec37ea2858f
sha512: cbed1e9a98c1e96631c150e5d48314de8a2a30692390e4fed7e7d6f354fa3ca07863f559f6584134412ec819d8f21fcf9f050e39da168cc76c1ee7d15c804198
ssdeep: 6144:zFP5lm/8xTPv7B6F3z6nHHfLzw0x6X58k+:zRLmk9XtUz6nfg0IX5J+
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D884022572E3C0B1D0A3673098A387D15ABB69702A3814B717B4E66F6FB07C08B75767
sha3_384: c2db0fb239769896f7b161e73ca77f9823768f6db3c026606cd32456e503120aa295fd4714ddce024e7e6691a5ce578d
ep_bytes: e845310000e989feffff6a0aff15cc10
timestamp: 2021-05-06 10:30:27

Version Info:

FileVersions: 9.1.2.1
Copyright: Copyright (C) 2022, soboklos
ProjectVersion: 74.85.66.75

Babar.97334 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Babar.97334
FireEyeGeneric.mg.a3c0ef0f0fec4e2d
ALYacGen:Variant.Babar.97334
CylanceUnsafe
VIPREGen:Variant.Babar.97334
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
SymantecPacked.Generic.525
tehtrisGeneric.Malware
APEXMalicious
CynetMalicious (score: 100)
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Babar.97334
AvastBotX-gen [Trj]
Ad-AwareGen:Variant.Babar.97334
EmsisoftGen:Variant.Babar.97334 (B)
McAfee-GW-EditionBehavesLike.Win32.Lockbit.fm
Trapminesuspicious.low.ml.score
SophosML/PE-A
IkarusVirus.Win32.Cryptor
GDataGen:Variant.Babar.97334
MAXmalware (ai score=83)
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GoogleDetected
Acronissuspicious
McAfeeArtemis!A3C0EF0F0FEC
VBA32Malware-Cryptor.2LA.gen
RisingMalware.Obscure/Heur!1.A89F (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
AVGBotX-gen [Trj]

How to remove Babar.97334?

Babar.97334 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment